Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HHIGH: 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:NDefault status
unknown
21.1.0 (custom) before *
unaffected
21.0.0 (custom) before 21.0.0.1
affected
17.5.0 (custom) before 17.5.1.4
affected
17.1.0 (custom) before 17.1.3.1
affected
16.1.0 (custom) before *
affected
Default status
unknown
2.0.0 (custom) before 2.0.3
affected
1.7.0 (custom) before 1.7.17
affected
Default status
unknown
2.0.0 (custom) before 2.0.3
affected
1.4.0 (custom) before 1.4.1
affected
Default status
unknown
2.0.0 (custom) before 2.1.1
affected
Description
When an HTTP/2 profile and an iRule containing the HTTP::redirect or HTTP::respond command are configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) process to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Problem types
CWE-476 NULL Pointer Dereference
Product status
21.1.0 (custom) before *
21.0.0 (custom) before 21.0.0.1
17.5.0 (custom) before 17.5.1.4
17.1.0 (custom) before 17.1.3.1
16.1.0 (custom) before *
2.0.0 (custom) before 2.0.3
1.7.0 (custom) before 1.7.17
2.0.0 (custom) before 2.0.3
1.4.0 (custom) before 1.4.1
2.0.0 (custom) before 2.1.1
Credits
F5
References
my.f5.com/manage/s/article/K000159034