CVE-2025-41430: BIG-IP SSL Orchestrator vulnerability
When BIG-IP SSL Orchestrator is enabled, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41430?
CVE-2025-41430 has been classified as a high severity vulnerability due to its potential to cause the Traffic Management Microkernel to terminate unexpectedly.
How do I fix CVE-2025-41430?
To mitigate CVE-2025-41430, upgrade to the patched versions of BIG-IP SSL Orchestrator specified in the release notes from F5.
What products are affected by CVE-2025-41430?
CVE-2025-41430 affects various versions of F5 BIG-IP SSL Orchestrator, specifically those versions within the ranges of 15.1.0 to 15.1.9, 16.1.0 to 16.1.3, and 17.1.0 to 17.5.0.
What impact does CVE-2025-41430 have on BIG-IP SSL Orchestrator?
CVE-2025-41430 can result in service disruption as it may cause the Traffic Management Microkernel to terminate, affecting the processing of undisclosed traffic.
Is there a workaround for CVE-2025-41430?
Currently, no specific workaround for CVE-2025-41430 has been provided, and the recommended action is to apply the appropriate software updates.