CVE-2018-5500 vulnerability in F5 Networks Products
Published on March 1, 2018
On F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, or 11.6.1 - 11.6.2, every Multipath TCP (MCTCP) connection established leaks a small amount of memory. Virtual server using TCP profile with Multipath TCP (MCTCP) feature enabled will be affected by this issue.
Products Associated with CVE-2018-5500
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-5500 are published in these products:
Affected Versions
F5 Networks, Inc. BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, WebAccelerator, WebSafe:- Version 13.0.0 is affected.
- Version 12.1.0 - 12.1.3.1 is affected.
- Version 11.6.1 - 11.6.2 is affected.
Exploit Probability
EPSS
0.68%
Percentile
71.10%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.