4.3
CVSSv2

CVE-2018-5501

Published: 01/03/2018 Updated: 23/03/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

In some circumstances, on F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, any 11.6.x or 11.5.x release, or 11.2.1, TCP DNS profile allows excessive buffering due to lack of flow control.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

f5 big-ip local traffic manager

f5 big-ip local traffic manager 11.2.1

f5 big-ip local traffic manager 13.0.0

f5 big-ip application acceleration manager 11.2.1

f5 big-ip application acceleration manager

f5 big-ip application acceleration manager 13.0.0

f5 big-ip advanced firewall manager 11.2.1

f5 big-ip advanced firewall manager

f5 big-ip advanced firewall manager 13.0.0

f5 big-ip analytics 13.0.0

f5 big-ip analytics

f5 big-ip analytics 11.2.1

f5 big-ip access policy manager

f5 big-ip access policy manager 11.2.1

f5 big-ip access policy manager 13.0.0

f5 big-ip application security manager 11.2.1

f5 big-ip application security manager

f5 big-ip application security manager 13.0.0

f5 big-ip dns

f5 big-ip dns 13.0.0

f5 big-ip dns 11.2.1

f5 big-ip link controller 11.2.1

f5 big-ip link controller

f5 big-ip link controller 13.0.0

f5 big-ip policy enforcement manager 11.2.1

f5 big-ip policy enforcement manager

f5 big-ip policy enforcement manager 13.0.0

f5 big-ip websafe

f5 big-ip websafe 13.0.0

f5 big-ip websafe 11.2.1

f5 big-ip edge gateway 11.2.1

f5 big-ip edge gateway 13.0.0

f5 big-ip edge gateway

f5 big-ip global traffic manager 13.0.0

f5 big-ip global traffic manager 11.2.1

f5 big-ip global traffic manager

f5 big-ip webaccelerator

f5 big-ip webaccelerator 13.0.0

f5 big-ip webaccelerator 11.2.1