CVE-2025-41431: TMM Vulnerability
When connection mirroring is configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate in the standby BIG-IP systems in a traffic group.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41431?
The severity of CVE-2025-41431 is critical due to its potential to cause traffic disruptions in standby BIG-IP systems.
How do I fix CVE-2025-41431?
To fix CVE-2025-41431, upgrade to patched versions provided by F5, specifically versions 17.1.2.2 or later for impacted products.
What are the affected products for CVE-2025-41431?
CVE-2025-41431 affects F5 BIG-IP Next SPK, BIG-IP Next CNF, and other versions of BIG-IP and BIG-IQ Centralized Management.
What is connection mirroring in the context of CVE-2025-41431?
Connection mirroring refers to a configuration on virtual servers that enables the synchronizing of connection states between active and standby systems.
What happens if CVE-2025-41431 is exploited?
Exploitation of CVE-2025-41431 can lead to the Traffic Management Microkernel terminating, leading to potential traffic loss and downtime.