CVE-2019-6661: High severity f5 access policy manager vulnerability
When the BIG-IP APM 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.4.1, or 11.5.1-11.6.5 system processes certain requests, the APD/APMD daemon may consume excessive resources.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-6661?
CVE-2019-6661 has been classified as a high severity vulnerability due to its potential to consume excessive resources on the affected systems.
How do I fix CVE-2019-6661?
To mitigate CVE-2019-6661, it is recommended to update to a patched version of the F5 BIG-IP Access Policy Manager that is not affected by this vulnerability.
Which versions of F5 BIG-IP Access Policy Manager are affected by CVE-2019-6661?
CVE-2019-6661 affects the F5 BIG-IP Access Policy Manager versions 11.5.1-11.6.5, 12.1.0-12.1.4.1, 13.1.0-13.1.3.1, 14.0.0-14.0.1, and 14.1.0-14.1.2.
What are the potential impacts of CVE-2019-6661?
The potential impact of CVE-2019-6661 includes degraded performance or service outages due to the resource exhaustion of the system.
Who is vulnerable to CVE-2019-6661?
Organizations using the affected versions of F5 BIG-IP Access Policy Manager are vulnerable to CVE-2019-6661 and should take immediate action to mitigate the risk.