CVE-2025-47148: BIG-IP APM and SSL Orchestrator vulnerability
When the BIG-IP system is configured as both a Security Assertion Markup Language (SAML) service provider (SP) and Identity Provider (IdP), with single logout (SLO) enabled on an access policy, undisclosed requests can cause an increase in memory resource utilization.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47148?
CVE-2025-47148 has a high severity due to its impact on memory resource utilization when certain configurations are present.
How do I fix CVE-2025-47148?
To mitigate CVE-2025-47148, upgrade your F5 BIG-IP system to the latest version specified in the vendor's advisory.
What configurations are affected by CVE-2025-47148?
CVE-2025-47148 affects environments where the BIG-IP system is configured as both a SAML service provider and an Identity Provider with single logout enabled.
What are the affected versions for CVE-2025-47148?
CVE-2025-47148 affects versions 15.1.0 to 15.1.10, 16.1.0 to 16.1.6, and 17.1.0 to 17.5.0 of the F5 BIG-IP products.
Is there a workaround for CVE-2025-47148?
Currently, the recommended action for CVE-2025-47148 is to upgrade to a non-affected version as there are no specific workarounds provided.