CVE-2021-23013 Information

Description

On BIG-IP versions 16.0.x before 16.0.1.1 15.1.x before 15.1.3 14.1.x before 14.1.4 13.1.x before 13.1.3.6 and 12.1.x before 12.1.5.3 the Traffic Management Microkernel (TMM) may stop responding when processing Stream Control Transmission Protocol (SCTP) traffic under certain conditions. This vulnerability affects TMM by way of a virtual server configured with an SCTP profile. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Reference

https://support.f5.com/csp/article/K04234247 https://support.f5.com/csp/article/K05300051

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

NONE

Base Score

HIGH

Base Severity

7.5

Share on: