On versions 14.0.0-14.1.2, 13.0.0-13.1.3, 12.1.0-12.1.5, and 11.5.1-11.6.5, the BIG-IP system fails to perform Martian Address Filtering (As defined in RFC 1812 section 5.3.7) on the control plane (management interface). This may allow attackers on an adjacent system to force BIG-IP into processing packets with spoofed source addresses.
References
Link Resource
https://support.f5.com/csp/article/K45644893 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: f5

Published: 2019-09-25T18:57:48

Updated: 2019-09-25T18:57:48

Reserved: 2019-01-22T00:00:00


Link: CVE-2019-6654

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-09-25T19:15:10.767

Modified: 2019-09-26T16:05:15.033


Link: CVE-2019-6654

JSON object: View

cve-icon Redhat Information

No data.

CWE