CVE-2022-41787: BIG-IP DNS Express vulnerability CVE-2022-41787
In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, when DNS profile is configured on a virtual server with DNS Express enabled, undisclosed DNS queries with DNSSEC can cause TMM to terminate.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
F5 BIG-IP DNS Expressto a version that resolves this vulnerability.Fixed in 17.0.0.1 - Upgrade
Upgrade
F5 BIG-IP DNS Expressto a version that resolves this vulnerability.Fixed in 16.1.3.1 - Upgrade
Upgrade
F5 BIG-IP DNS Expressto a version that resolves this vulnerability.Fixed in 15.1.6.1 - Upgrade
Upgrade
F5 BIG-IP DNS Expressto a version that resolves this vulnerability.Fixed in 14.1.5.1 - Upgrade
Upgrade
F5 BIG-IP DNS Expressto a version that resolves this vulnerability.Fixed in 13.1.5.1
Event History
Frequently Asked Questions
What is CVE-2022-41787?
CVE-2022-41787 is a vulnerability in F5 Big-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1 that can cause TMM to terminate when DNS profile is configured on a virtual server with DNS Express enabled.
How severe is CVE-2022-41787?
The severity of CVE-2022-41787 is high, with a CVSS score of 7.5.
What is the affected software for CVE-2022-41787?
The affected software for CVE-2022-41787 includes F5 Big-IP Domain Name System and F5 Big-IP Local Traffic Manager versions 13.1.x, 14.1.x, 15.1.x, 16.1.x, and 17.0.x.
How can I fix CVE-2022-41787?
To fix CVE-2022-41787, update your F5 Big-IP software to version 17.0.0.1, 16.1.3.1, 15.1.6.1, 14.1.5.1, or 13.1.5.1.
Where can I find more information about CVE-2022-41787?
You can find more information about CVE-2022-41787 in the F5 BIG-IP Security Advisory article: https://support.f5.com/csp/article/K70569537