Medium severity5.9NVD Advisory· Published Nov 22, 2017· Updated Jun 17, 2026
CVE-2017-6166
CVE-2017-6166
Description
In BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, and WebSafe software 12.0.0 to 12.1.1, in some cases the Traffic Management Microkernel (TMM) may crash when processing fragmented packets. This vulnerability affects TMM through a virtual server configured with a FastL4 profile. Traffic processing is disrupted while TMM restarts. If the affected BIG-IP system is configured as part of a device group, it will trigger a failover to the peer device.
Affected products
2- F5, Inc./Big Ip (ltm, Aam, Afm, Apm, Asm, Link Controller, Pem, Webaccelerator, Websafe)llm-create2 versions
12.0.0 to 12.1.1+ 1 more
- (no CPE)range: 12.0.0 to 12.1.1
- (no CPE)range: 12.0.0, 12.1.1
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/102264nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039949nvdThird Party AdvisoryVDB Entry
- support.f5.com/csp/article/K65615624nvdIssue TrackingMitigationVendor Advisory
News mentions
0No linked articles in our index yet.