First published: Wed Aug 14 2024(Updated: )
When a TCP profile with Multipath TCP enabled (MPTCP) is configured on a virtual server, undisclosed traffic along with conditions beyond the attacker's control can cause the Traffic Management Microkernel (TMM) to terminate.
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP Next SPK | >=1.7.0<=1.8.2 | 1.9.0 |
F5 BIG-IP Next CNF | >=1.1.0<=1.1.1 | 1.2.0 |
F5 BIG-IP | =17.1.0 | 17.1.1 |
F5 BIG-IP | >=16.1.0<=16.1.4 | 16.1.5 |
F5 BIG-IP | >=15.1.0<=15.1.9 | 15.1.10 |
F5 BIG-IP Access Policy Manager | >=15.1.0<=15.1.1 | |
F5 BIG-IP Access Policy Manager | >=16.1.0<16.1.5 | |
F5 BIG-IP Access Policy Manager | =17.1.0 | |
F5 BIG-IP Advanced Firewall Manager | >=15.1.0<=15.1.1 | |
F5 BIG-IP Advanced Firewall Manager | >=16.1.0<16.1.5 | |
F5 BIG-IP Advanced Firewall Manager | =17.1.0 | |
F5 Big-ip Advanced Web Application Firewall | >=15.1.0<=15.1.1 | |
F5 Big-ip Advanced Web Application Firewall | >=16.1.0<16.1.5 | |
F5 Big-ip Advanced Web Application Firewall | =17.1.0 | |
F5 BIG-IP Analytics | >=15.1.0<=15.1.1 | |
F5 BIG-IP Analytics | >=16.1.0<16.1.5 | |
F5 BIG-IP Analytics | =17.1.0 | |
F5 Big-ip Application Acceleration Manager | >=15.1.0<=15.1.1 | |
F5 Big-ip Application Acceleration Manager | >=16.1.0<16.1.5 | |
F5 Big-ip Application Acceleration Manager | =17.1.0 | |
F5 BIG-IP Application Security Manager | >=15.1.0<=15.1.1 | |
F5 BIG-IP Application Security Manager | >=16.1.0<16.1.5 | |
F5 BIG-IP Application Security Manager | =17.1.0 | |
F5 Big-ip Application Visibility And Reporting | >=15.1.0<=15.1.1 | |
F5 Big-ip Application Visibility And Reporting | >=16.1.0<16.1.5 | |
F5 Big-ip Application Visibility And Reporting | =17.1.0 | |
F5 Big-ip Automation Toolchain | >=15.1.0<=15.1.1 | |
F5 Big-ip Automation Toolchain | >=16.1.0<16.1.5 | |
F5 Big-ip Automation Toolchain | =17.1.0 | |
F5 Big-ip Carrier-grade Nat | >=15.1.0<=15.1.1 | |
F5 Big-ip Carrier-grade Nat | >=16.1.0<16.1.5 | |
F5 Big-ip Carrier-grade Nat | =17.1.0 | |
F5 Big-ip Container Ingress Services | >=15.1.0<=15.1.1 | |
F5 Big-ip Container Ingress Services | >=16.1.0<16.1.5 | |
F5 Big-ip Container Ingress Services | =17.1.0 | |
F5 Big-ip Ddos Hybrid Defender | >=15.1.0<=15.1.1 | |
F5 Big-ip Ddos Hybrid Defender | >=16.1.0<16.1.5 | |
F5 Big-ip Ddos Hybrid Defender | =17.1.0 | |
F5 Big-ip Domain Name System | >=15.1.0<=15.1.1 | |
F5 Big-ip Domain Name System | >=16.1.0<16.1.5 | |
F5 Big-ip Domain Name System | =17.1.0 | |
F5 Big-ip Edge Gateway | >=15.1.0<=15.1.1 | |
F5 Big-ip Edge Gateway | >=16.1.0<16.1.5 | |
F5 Big-ip Edge Gateway | =17.1.0 | |
F5 Big-ip Fraud Protection Service | >=15.1.0<=15.1.1 | |
F5 Big-ip Fraud Protection Service | >=16.1.0<16.1.5 | |
F5 Big-ip Fraud Protection Service | =17.1.0 | |
F5 Big-ip Global Traffic Manager | >=15.1.0<=15.1.1 | |
F5 Big-ip Global Traffic Manager | >=16.1.0<16.1.5 | |
F5 Big-ip Global Traffic Manager | =17.1.0 | |
F5 Big-ip Link Controller | >=15.1.0<=15.1.1 | |
F5 Big-ip Link Controller | >=16.1.0<16.1.5 | |
F5 Big-ip Link Controller | =17.1.0 | |
F5 Big-ip Local Traffic Manager | >=15.1.0<=15.1.1 | |
F5 Big-ip Local Traffic Manager | >=16.1.0<16.1.5 | |
F5 Big-ip Local Traffic Manager | =17.1.0 | |
F5 Big-ip Next Cloud-native Network Functions | >=1.1.0<1.2.0 | |
F5 Big-ip Next Service Proxy For Kubernetes | >=1.7.0<1.9.0 | |
F5 Big-ip Policy Enforcement Manager | >=15.1.0<=15.1.1 | |
F5 Big-ip Policy Enforcement Manager | >=16.1.0<16.1.5 | |
F5 Big-ip Policy Enforcement Manager | =17.1.0 | |
F5 Big-ip Ssl Orchestrator | >=15.1.0<=15.1.1 | |
F5 Big-ip Ssl Orchestrator | >=16.1.0<16.1.5 | |
F5 Big-ip Ssl Orchestrator | =17.1.0 | |
F5 Big-ip Webaccelerator | >=15.1.0<=15.1.1 | |
F5 Big-ip Webaccelerator | >=16.1.0<16.1.5 | |
F5 Big-ip Webaccelerator | =17.1.0 | |
F5 Big-ip Websafe | >=15.1.0<=15.1.1 | |
F5 Big-ip Websafe | >=16.1.0<16.1.5 | |
F5 Big-ip Websafe | =17.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.