First published: Wed May 07 2025(Updated: )
When connection mirroring is configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate in the standby BIG-IP systems in a traffic group.
Credit: f5sirt@f5.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP Next | ||
F5 BIG-IP Next | >=1.7.0<=1.9.2 | |
F5 BIG-IP Next | ||
F5 BIG-IP Next | >=1.1.0<=1.4.1 | |
F5 BIG-IP and BIG-IQ Centralized Management | =17.1.2 | 17.1.2.2 |
F5 BIG-IP and BIG-IQ Centralized Management |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-41431 is critical due to its potential to cause traffic disruptions in standby BIG-IP systems.
To fix CVE-2025-41431, upgrade to patched versions provided by F5, specifically versions 17.1.2.2 or later for impacted products.
CVE-2025-41431 affects F5 BIG-IP Next SPK, BIG-IP Next CNF, and other versions of BIG-IP and BIG-IQ Centralized Management.
Connection mirroring refers to a configuration on virtual servers that enables the synchronizing of connection states between active and standby systems.
Exploitation of CVE-2025-41431 can lead to the Traffic Management Microkernel terminating, leading to potential traffic loss and downtime.