Vulnerability in F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, and WebSafe 12.1.0 through 12.1.2: TLS Abbreviated Handshake Disruption

Vulnerability in F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, and WebSafe 12.1.0 through 12.1.2: TLS Abbreviated Handshake Disruption

CVE-2017-6141 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

In F5 BIG-IP LTM, AAM, AFM, APM, ASM, Link Controller, PEM, and WebSafe 12.1.0 through 12.1.2, certain values in a TLS abbreviated handshake when using a client SSL profile with the Session Ticket option enabled may cause disruption of service to the Traffic Management Microkernel (TMM). The Session Ticket option is disabled by default.

Learn more about our Cis Benchmark Audit For F5.