First published: Wed Feb 14 2024(Updated: )
For unspecified traffic patterns, BIG-IP AFM IPS engine may spend an excessive amount of time matching the traffic against signatures, resulting in Traffic Management Microkernel (TMM) restarting and traffic disruption. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP (AFM + IPS) | =17.1.0 | 17.1.1 |
F5 BIG-IP (AFM + IPS) | >=16.1.0<=16.1.3 | 16.1.4 |
F5 BIG-IP (AFM + IPS) | >=15.1.0<=15.1.8 | 15.1.9 |
F5 BIG-IP Advanced Firewall Manager | >=15.1.0<15.1.9 | |
F5 BIG-IP Advanced Firewall Manager | >=16.1.0<16.1.4 | |
F5 BIG-IP Advanced Firewall Manager | =17.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21771 is classified as a high severity vulnerability due to the potential for traffic disruption.
To fix CVE-2024-21771, upgrade F5 BIG-IP (AFM + IPS) to a version that includes the remedy for this vulnerability.
CVE-2024-21771 affects F5 BIG-IP (AFM + IPS) versions 15.1.0 through 15.1.8, 16.1.0 through 16.1.3, and 17.1.0.
Symptoms of CVE-2024-21771 may include excessive time matching traffic against signatures leading to Traffic Management Microkernel (TMM) restarts.
No specific workaround for CVE-2024-21771 is provided, and upgrading to a patched version is recommended.