CVE-2017-6154: F5 BIG-IP Application Security Manager

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

On F5 BIG-IP systems running 13.0.0, 12.1.0 - 12.1.3.1, or 11.6.1 - 11.6.2, the BIG-IP ASM bd daemon may core dump memory under some circumstances when processing undisclosed types of data on systems with 48 or more CPU cores.

Affected products

  • F5 BIG-IP Application Security Manager: from 11.6.1, up to and including 11.6.2; from 12.1.0, up to and including 12.1.3.1; version 13.0.0 only

Published 2018-03-01. Last modified 2026-06-17.