First published: Wed Oct 19 2022(Updated: )
In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with IPv6/IPv4 translation rules is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization.
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP Advanced Firewall Manager | >=15.1.0<15.1.5.1 | |
F5 BIG-IP Advanced Firewall Manager | >=16.1.0<16.1.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-41806.
The title of this vulnerability is 'In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1 when BIG-IP AFM Network Address Transl…'.
In versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1, when BIG-IP AFM Network Address Translation policy with IPv6/IPv4 translation rules is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization.
Versions 16.1.x before 16.1.3.2 and 15.1.x before 15.1.5.1 of F5 BIG-IP Advanced Firewall Manager are affected by this vulnerability.
The severity of CVE-2022-41806 is high with a severity value of 7.5.
To fix this vulnerability, update to versions 16.1.3.2 or later for 16.1.x and 15.1.5.1 or later for 15.1.x of F5 BIG-IP Advanced Firewall Manager.
Yes, you can find additional information about this vulnerability at this reference: [https://support.f5.com/csp/article/K00721320](https://support.f5.com/csp/article/K00721320).
The Common Weakness Enumeration (CWE) ID for this vulnerability is 400.