CVE-2017-6169: F5 BIG-IP Policy Enforcement Manager
Medium severity, CVSS 6.8. EPSS: 1.4% chance of exploitation in the next 30 days.
In versions 13.0.0, 12.0.0-12.1.3, or 11.6.0-11.6.2, an F5 BIG-IP virtual server using the URL categorization feature may cause the Traffic Management Microkernel (TMM) to produce a core file when it receives malformed URLs during categorization.
Affected products
- F5 BIG-IP Policy Enforcement Manager: version 11.6.0 only; version 11.6.1 only; version 11.6.2 only; version 12.0.0 only; version 12.1.0 only; version 12.1.1 only; …
Published 2018-02-06. Last modified 2026-06-17.