CVE-2019-6603 vulnerability in F5 Networks Products
Published on March 28, 2019
In BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3, and 13.0.0-13.0.1, malformed TCP packets sent to a self IP address or a FastL4 virtual server may cause an interruption of service. The control plane is not exposed to this issue. This issue impacts the data plane virtual servers and self IPs.
Products Associated with CVE-2019-6603
Want to know whenever a new CVE is published for F5 Networks products? stack.watch will email you.
Affected Versions
BIG-IP (LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, FPS, GTM, Link Controller, PEM, WebAccelerator):- Version 11.5.1-11.5.8 is affected.
- Version 11.6.1-11.6.3 is affected.
- Version 12.1.0-12.1.3 is affected.
- Version 13.0.0-13.0.1 is affected.
Exploit Probability
EPSS
0.89%
Percentile
75.26%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.