CVE-2016-5023

high F5
CVSS v3 Base Score
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
3.0%
Exploitation probability in 30 days
Top 13% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Confidentiality
None
Integrity
None
Availability
High
Published: August 26, 2016 (3547 days ago)
Last Modified: May 6, 2026
Vendor: F5
Source: NVD

Description

Virtual servers in F5 BIG-IP systems 11.2.1 HF11 through HF15, 11.4.1 HF4 through HF10, 11.5.3 through 11.5.4, 11.6.0 HF5 through HF7, and 12.0.0, when configured with a TCP profile, allow remote attackers to cause a denial of service (Traffic Management Microkernel restart) via crafted network traffic.

CWE

CWE-284

Affected Products

f5 big-ip edge gatewayf5 big-ip protocol security modulef5 big-ip analyticsf5 big-ip application security managerf5 big-ip advanced firewall managerf5 big-ip domain name systemf5 big-ip policy enforcement managerf5 big-ip wan optimization managerf5 big-ip access policy managerf5 big-ip application acceleration manager

References