{ "id": "CVE-2020-5872", "sourceIdentifier": "f5sirt@f5.com", "published": "2020-04-30T20:15:12.543", "lastModified": "2020-05-06T20:38:25.057", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "On BIG-IP 14.1.0-14.1.2.3, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.4.1, when processing TLS traffic with hardware cryptographic acceleration enabled on platforms with Intel QAT hardware, the Traffic Management Microkernel (TMM) may stop responding and cause a failover event." }, { "lang": "es", "value": "En BIG-IP versiones 14.1.0 hasta 14.1.2.3, 14.0.0 hasta 14.0.1, 13.1.0 hasta 13.1.3.1 y 12.1.0 hasta 12.1.4.1, cuando se procesa el tr\u00e1fico TLS con aceleraci\u00f3n criptogr\u00e1fica de hardware habilitada en plataformas con hardware Intel QAT, el Traffic Management Microkernel (TMM) puede dejar de responder y causar un evento de conmutaci\u00f3n por error." } ], "metrics": { "cvssMetricV31": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "HIGH", "baseScore": 7.5, "baseSeverity": "HIGH" }, "exploitabilityScore": 3.9, "impactScore": 3.6 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.0 }, "baseSeverity": "MEDIUM", "exploitabilityScore": 10.0, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "978262C0-E7B8-468F-AA0D-0B5D0D8032B8" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "C7174510-CC8F-4F4D-9706-C7CBB99D7172" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "5AF91B1E-6739-47B0-83AC-62475648FA9F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "07FC84CA-3E12-43FB-ADBD-7B988DEF3A97" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "2B8AB93E-1D41-478F-BCAD-4A2D83E6F5DA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "F2BFAF3E-5E01-4EBF-AC8C-92DDFF38EB8F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "EAD6198E-F90A-48CB-B02B-5770B59ACE12" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_advanced_firewall_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "5BEE162F-A016-4EDB-A7D1-1F87945EED3E" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "B52E2155-0F38-443C-9339-B6D9276BD76C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "88FFA413-C798-4FB6-AA37-1BDD1C11DD06" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "279D6B0F-A438-40B3-BE9D-2C9E2412E01D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_analytics:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "7F553CD8-01FF-4616-A32C-4F4B5844A6FD" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "9A48B5AB-6882-471B-ABB8-4EDEFD253158" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "C13DFF4A-CD7C-4B9A-AD90-79E29FC1D117" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "05A3E73A-9B60-4568-91E1-83AEFD4A6B21" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_acceleration_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "547D6BFB-5DE8-4027-88EF-0349400494D1" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "434B9357-1FED-4F23-B494-873CCAD18EA4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "241F94B5-C01C-4F62-85D9-EAC3C71845BC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "31A36F31-1453-4907-8621-61E75F285734" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_application_security_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "7881BC1C-1B10-43D4-AD4A-545D7C7C4160" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "6483DA57-692E-46D7-BF45-CD5B7A507644" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "09B194A3-5261-4063-9E02-19855CCD8A90" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "B281ACF1-B672-491C-AC77-E39F25CC02D1" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_domain_name_system:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "17DCA2C1-FD7A-430F-AD7C-4AB2DF7E233E" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "3A70C780-FEA3-4105-ACFA-86563BA532EF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "48A3DFA8-2DB0-4F65-AE6F-BB02CF42EE7E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "A60A7D69-96CA-4C88-8D65-220B93C56980" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_fraud_protection_service:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "F6DFBD76-20DB-497D-B407-1EAA5555B49F" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "5D2300C8-7B5D-4B8F-B3A4-9951CF92DE80" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "FBE0191C-ABA8-4FBE-99FE-D8DD9ABCA57D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "691942EE-786B-4BF9-89F0-C47CB8B2A007" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_global_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "64B21CD4-4D50-45EC-8297-D54A1BBC6521" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "7ACFEBB4-A25C-4BBB-B26A-F48DD6431FBD" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "FC6FB035-B2F6-452B-A407-85535B07D897" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "BDD109E8-E153-4C4C-9328-98839E90252D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_link_controller:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "DA369F2E-2E17-4BEA-B894-14656D977B93" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "56D0EC5E-B613-4CAE-BF1A-94B9CE360892" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "76D757F4-B333-4EFB-87CE-1F14BD1B1734" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "D2D83E3E-A360-4547-938D-A8D895CBD6CE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_local_traffic_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "7E0B6F31-DC75-49C9-9E59-EF1CD68B1B3D" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "12.1.0", "versionEndIncluding": "12.1.4.1", "matchCriteriaId": "C6BA7C53-5BBB-45F5-8A61-C44CDB673B52" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "13.1.0", "versionEndIncluding": "13.1.3.1", "matchCriteriaId": "1886D50C-6B79-4A7F-887B-08093F0C4894" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.0.0", "versionEndIncluding": "14.0.1", "matchCriteriaId": "439E22C8-A863-4E4A-A7E6-330608C9A982" }, { "vulnerable": true, "criteria": "cpe:2.3:a:f5:big-ip_policy_enforcement_manager:*:*:*:*:*:*:*:*", "versionStartIncluding": "14.1.0", "versionEndIncluding": "14.1.2.3", "matchCriteriaId": "8D806FBF-8E6D-412C-B547-92AD9294B639" } ] } ] } ], "references": [ { "url": "https://support.f5.com/csp/article/K63558580", "source": "f5sirt@f5.com", "tags": [ "Vendor Advisory" ] } ] }