CVE-2017-6167: Race Condition
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, race conditions in iControl REST may lead to commands being executed with different privilege levels than expected.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2017-6167.
What is the severity of CVE-2017-6167?
The severity of CVE-2017-6167 is high with a severity score of 7.5.
Which software versions are affected by CVE-2017-6167?
F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software versions 13.0.0 and 12.1.0 - 12.1.2 are affected by CVE-2017-6167.
What is the risk associated with CVE-2017-6167?
The risk associated with CVE-2017-6167 is that race conditions in iControl REST may lead to commands being executed with different privilege levels than expected.
Are there any references available for CVE-2017-6167?
Yes, you can find references for CVE-2017-6167 at the following links: [SecurityTracker](http://www.securitytracker.com/id/1040053) and [F5 Support](https://support.f5.com/csp/article/K24465120).