imPC@ndo IT

Tracker / CVE-2018-17539

CVE-2018-17539

High 7.5

The BGP daemon (bgpd) in all IP Infusion ZebOS versions to 7.10.6 and all OcNOS versions to 1.3.3.145 allow remote attackers to cause a denial of service attack via an autonomous system (AS) path containing 8 or more autonomous system number (ASN) elements.

Affected products and versions

f5 big-ip_local_traffic_manager
f5 big-ip_local_traffic_manager · 11.2.1 → 11.6.3
f5 big-ip_local_traffic_manager · 12.1.0 → 12.1.3
f5 big-ip_local_traffic_manager · 13.0.0 → 13.1.1
ipinfusion ocnos · … → 1.3.3.145
ipinfusion zebos · … → 7.10.6

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References