CVE-2019-6612: High severity f5 access policy manager vulnerability
On BIG-IP 14.0.0-14.1.0.1, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, DNS query TCP connections that are aborted before receiving a response from a DNS cache may cause TMM to restart.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-6612?
The severity of CVE-2019-6612 is classified as moderate due to the potential for TMM to restart, causing service disruption.
How do I fix CVE-2019-6612?
To fix CVE-2019-6612, upgrade affected F5 BIG-IP software versions to the latest non-vulnerable release.
Which F5 BIG-IP versions are affected by CVE-2019-6612?
CVE-2019-6612 affects F5 BIG-IP versions 11.5.2 to 11.5.8, 11.6.1 to 11.6.3.4, 12.1.0 to 12.1.4, 13.0.0 to 13.1.1.5, and 14.0.0 to 14.1.0.2.
What components of F5 BIG-IP are impacted by CVE-2019-6612?
CVE-2019-6612 impacts multiple components including the Access Policy Manager, Advanced Firewall Manager, and Local Traffic Manager among others.
Is there a workaround for CVE-2019-6612?
As a temporary workaround for CVE-2019-6612, monitoring and managing DNS query configurations may help mitigate the issue until a patch can be applied.