First published: Wed Sep 07 2016(Updated: )
The RESOLV::lookup iRule command in F5 BIG-IP LTM, APM, ASM, and Link Controller 10.2.1 through 10.2.4, 11.2.1, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.0.0 before HF3; BIG-IP AAM, AFM, and PEM 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.0.0 before HF3; BIG-IP Analytics 11.2.1, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.0.0 before HF3; BIG-IP DNS 12.0.0 before HF3; BIG-IP Edge Gateway, WebAccelerator, and WOM 10.2.1 through 10.2.4 and 11.2.1; BIG-IP GTM 10.2.1 through 10.2.4, 11.2.1, 11.4.x, 11.5.x before 11.5.4 HF2, and 11.6.x before 11.6.1; and BIG-IP PSM 10.2.1 through 10.2.4 and 11.4.0 through 11.4.1 allows remote DNS servers to cause a denial of service (CPU consumption or Traffic Management Microkernel crash) via a crafted PTR response.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Riverbed SteelApp Traffic Manager | =10.2.1 | |
Riverbed SteelApp Traffic Manager | =10.2.2 | |
Riverbed SteelApp Traffic Manager | =10.2.3 | |
Riverbed SteelApp Traffic Manager | =10.2.4 | |
Riverbed SteelApp Traffic Manager | =11.2.1 | |
Riverbed SteelApp Traffic Manager | =11.4.0 | |
Riverbed SteelApp Traffic Manager | =11.4.1 | |
Riverbed SteelApp Traffic Manager | =11.5.0 | |
Riverbed SteelApp Traffic Manager | =11.5.1 | |
Riverbed SteelApp Traffic Manager | =11.5.2 | |
Riverbed SteelApp Traffic Manager | =11.5.3 | |
Riverbed SteelApp Traffic Manager | =11.5.4 | |
Riverbed SteelApp Traffic Manager | =11.6.0 | |
Riverbed SteelApp Traffic Manager | =12.0.0 | |
F5 BIG-IP WebAccelerator | =10.2.1 | |
F5 BIG-IP WebAccelerator | =10.2.2 | |
F5 BIG-IP WebAccelerator | =10.2.3 | |
F5 BIG-IP WebAccelerator | =10.2.4 | |
F5 BIG-IP WebAccelerator | =11.2.1 | |
F5 BIG-IP Application Acceleration Manager | =11.4.0 | |
F5 BIG-IP Application Acceleration Manager | =11.4.1 | |
F5 BIG-IP Application Acceleration Manager | =11.5.0 | |
F5 BIG-IP Application Acceleration Manager | =11.5.1 | |
F5 BIG-IP Application Acceleration Manager | =11.5.2 | |
F5 BIG-IP Application Acceleration Manager | =11.5.3 | |
F5 BIG-IP Application Acceleration Manager | =11.5.4 | |
F5 BIG-IP Application Acceleration Manager | =11.6.0 | |
F5 BIG-IP Application Acceleration Manager | =12.0.0 | |
Riverbed SteelApp Traffic Manager | =10.2.1 | |
Riverbed SteelApp Traffic Manager | =10.2.2 | |
Riverbed SteelApp Traffic Manager | =10.2.3 | |
Riverbed SteelApp Traffic Manager | =10.2.4 | |
Riverbed SteelApp Traffic Manager | =11.2.1 | |
Riverbed SteelApp Traffic Manager | =11.4.0 | |
Riverbed SteelApp Traffic Manager | =11.4.1 | |
Riverbed SteelApp Traffic Manager | =11.5.0 | |
Riverbed SteelApp Traffic Manager | =11.5.1 | |
Riverbed SteelApp Traffic Manager | =11.5.2 | |
Riverbed SteelApp Traffic Manager | =11.5.3 | |
Riverbed SteelApp Traffic Manager | =11.5.4 | |
Riverbed SteelApp Traffic Manager | =11.6.0 | |
F5 BIG-IP Link Controller | =10.2.1 | |
F5 BIG-IP Link Controller | =10.2.2 | |
F5 BIG-IP Link Controller | =10.2.3 | |
F5 BIG-IP Link Controller | =10.2.4 | |
F5 BIG-IP Link Controller | =11.2.1 | |
F5 BIG-IP Link Controller | =11.4.0 | |
F5 BIG-IP Link Controller | =11.4.1 | |
F5 BIG-IP Link Controller | =11.5.0 | |
F5 BIG-IP Link Controller | =11.5.1 | |
F5 BIG-IP Link Controller | =11.5.2 | |
F5 BIG-IP Link Controller | =11.5.3 | |
F5 BIG-IP Link Controller | =11.5.4 | |
F5 BIG-IP Link Controller | =11.6.0 | |
F5 BIG-IP Link Controller | =12.0.0 | |
F5 BIG-IP Advanced Firewall Manager | =11.4.0 | |
F5 BIG-IP Advanced Firewall Manager | =11.4.1 | |
F5 BIG-IP Advanced Firewall Manager | =11.5.0 | |
F5 BIG-IP Advanced Firewall Manager | =11.5.1 | |
F5 BIG-IP Advanced Firewall Manager | =11.5.2 | |
F5 BIG-IP Advanced Firewall Manager | =11.5.3 | |
F5 BIG-IP Advanced Firewall Manager | =11.5.4 | |
F5 BIG-IP Advanced Firewall Manager | =11.6.0 | |
F5 BIG-IP Advanced Firewall Manager | =12.0.0 | |
F5 BIG-IP Protocol Security Manager | =10.2.1 | |
F5 BIG-IP Protocol Security Manager | =10.2.2 | |
F5 BIG-IP Protocol Security Manager | =10.2.3 | |
F5 BIG-IP Protocol Security Manager | =10.2.4 | |
F5 BIG-IP Protocol Security Manager | =11.4.0 | |
F5 BIG-IP Protocol Security Manager | =11.4.1 | |
Exinda WAN Optimization Suite | =10.2.1 | |
Exinda WAN Optimization Suite | =10.2.2 | |
Exinda WAN Optimization Suite | =10.2.3 | |
Exinda WAN Optimization Suite | =10.2.4 | |
Exinda WAN Optimization Suite | =11.2.1 | |
F5 Application Security Manager | =10.2.1 | |
F5 Application Security Manager | =10.2.2 | |
F5 Application Security Manager | =10.2.3 | |
F5 Application Security Manager | =10.2.4 | |
F5 Application Security Manager | =11.2.1 | |
F5 Application Security Manager | =11.4.0 | |
F5 Application Security Manager | =11.4.1 | |
F5 Application Security Manager | =11.5.0 | |
F5 Application Security Manager | =11.5.1 | |
F5 Application Security Manager | =11.5.2 | |
F5 Application Security Manager | =11.5.3 | |
F5 Application Security Manager | =11.5.4 | |
F5 Application Security Manager | =11.6.0 | |
F5 Application Security Manager | =12.0.0 | |
F5 BIG-IP Policy Enforcement Manager | =11.4.0 | |
F5 BIG-IP Policy Enforcement Manager | =11.4.1 | |
F5 BIG-IP Policy Enforcement Manager | =11.5.0 | |
F5 BIG-IP Policy Enforcement Manager | =11.5.1 | |
F5 BIG-IP Policy Enforcement Manager | =11.5.2 | |
F5 BIG-IP Policy Enforcement Manager | =11.5.3 | |
F5 BIG-IP Policy Enforcement Manager | =11.5.4 | |
F5 BIG-IP Policy Enforcement Manager | =11.6.0 | |
F5 BIG-IP Policy Enforcement Manager | =12.0.0 | |
F5 BIG-IP | =12.0.0 | |
F5 BIG-IP Analytics | =11.2.1 | |
F5 BIG-IP Analytics | =11.4.0 | |
F5 BIG-IP Analytics | =11.4.1 | |
F5 BIG-IP Analytics | =11.5.0 | |
F5 BIG-IP Analytics | =11.5.1 | |
F5 BIG-IP Analytics | =11.5.2 | |
F5 BIG-IP Analytics | =11.5.3 | |
F5 BIG-IP Analytics | =11.5.4 | |
F5 BIG-IP Analytics | =11.6.0 | |
F5 BIG-IP Analytics | =12.0.0 | |
F5 BIG-IP Edge Gateway | =10.2.1 | |
F5 BIG-IP Edge Gateway | =10.2.2 | |
F5 BIG-IP Edge Gateway | =10.2.3 | |
F5 BIG-IP Edge Gateway | =10.2.4 | |
F5 BIG-IP Edge Gateway | =11.2.1 | |
F5 Access Policy Manager | =10.2.1 | |
F5 Access Policy Manager | =10.2.2 | |
F5 Access Policy Manager | =10.2.3 | |
F5 Access Policy Manager | =10.2.4 | |
F5 Access Policy Manager | =11.2.1 | |
F5 Access Policy Manager | =11.4.0 | |
F5 Access Policy Manager | =11.4.1 | |
F5 Access Policy Manager | =11.5.0 | |
F5 Access Policy Manager | =11.5.1 | |
F5 Access Policy Manager | =11.5.2 | |
F5 Access Policy Manager | =11.5.3 | |
F5 Access Policy Manager | =11.5.4 | |
F5 Access Policy Manager | =11.6.0 | |
F5 Access Policy Manager | =12.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-6876 is considered high, as it can lead to potential information disclosure.
To fix CVE-2016-6876, it is recommended to upgrade to the appropriate patched version of F5 BIG-IP as specified in the security advisory.
CVE-2016-6876 affects F5 BIG-IP LTM, APM, ASM, and Link Controller versions ranging from 10.2.1 to 12.0.0, depending on the specific version.
The potential impacts of CVE-2016-6876 include unauthorized access to sensitive information and potential system compromise.
Yes, F5 has released patches for affected versions of BIG-IP to mitigate the risks associated with CVE-2016-6876.