CVE-2025-24312: BIG-IP AFM vulnerability
When BIG-IP AFM is provisioned with IPS module enabled and protocol inspection profile is configured on a virtual server or firewall rule or policy, undisclosed traffic can cause an increase in CPU resource utilization.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24312?
The severity of CVE-2025-24312 has been classified as significant due to its potential to impact CPU resource utilization.
How do I fix CVE-2025-24312?
To fix CVE-2025-24312, upgrade to the recommended versions of F5 BIG-IP software as specified in the advisory.
What products are affected by CVE-2025-24312?
CVE-2025-24312 affects multiple versions of F5 BIG-IP AFM and F5 BIG-IP Next CNF between specific versions.
What is the impact of CVE-2025-24312 on system performance?
CVE-2025-24312 can lead to increased CPU resource utilization when specific traffic is present.
Is there a workaround for CVE-2025-24312?
Currently, there are no official workarounds for CVE-2025-24312; upgrading to the latest version is advised.