Vulnerabilities > CVE-2019-6608 - Memory Leak vulnerability in F5 products
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
On BIG-IP 11.5.1-11.6.3, 12.1.0-12.1.3, 13.0.0-13.1.1.1, and 14.0.0-14.0.0.2, under certain conditions, the snmpd daemon may leak memory on a multi-blade BIG-IP vCMP guest when processing authorized SNMP requests.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | F5 Networks Local Security Checks |
NASL id | F5_BIGIP_SOL12139752.NASL |
description | Under certain conditions, the snmpd process may leak memory on a multi-blade BIG-IP Virtual Clustered Multiprocessing (vCMP) guest when processing authorized SNMP requests. (CVE-2019-6608) Impact Over time, the snmpd process consumes excessive memory, forcing the BIG-IP system to slow down and eventually fail over. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 123028 |
published | 2019-03-25 |
reporter | This script is Copyright (C) 2019-2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/123028 |
title | F5 Networks BIG-IP : BIG-IP SNMPD vulnerability (K12139752) |