CVE-2025-60015: F5OS out-of-bounds write vulnerability
Published Oct 15, 2025
·Updated
An out-of-bounds write vulnerability exists in F5OS-A and F5OS-C that could lead to memory corruption.
Affected Software
6 affected componentsFixes available
F5 F5OS-A=1.8.0, >=1.5.1<=1.5.3
1.8.31.5.4
F5 F5OS-C>=1.8.0<=1.8.1, >=1.6.0<=1.6.2, =3
1.8.21.6.4
F5 F5OS-A>=1.5.1<1.5.4
F5 F5OS-A=1.8.0
F5 F5OS-C>=1.6.0<=1.6.2
F5 F5OS-C>=1.8.0<1.8.2
Event History
Oct 15, 2025
Advisory Published
via F5·10:08 AM
Data Sourced
via F5·10:08 AM
DescriptionSeverityWeaknessAffected Software
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-60015?
CVE-2025-60015 has a high severity rating due to its potential to cause memory corruption.
2
How do I fix CVE-2025-60015?
To fix CVE-2025-60015, upgrade to the appropriate patched versions of F5OS-A or F5OS-C as specified by F5.
3
Which versions are affected by CVE-2025-60015?
CVE-2025-60015 affects F5OS-A versions up to 1.8.0 and F5OS-C versions between 1.6.0 to 1.8.1 and specifically version 3.
4
What products are impacted by CVE-2025-60015?
The impacted products by CVE-2025-60015 are F5OS-A and F5OS-C from F5 Networks.
5
Is CVE-2025-60015 still applicable after EoT for affected versions?
Yes, CVE-2025-60015 is still applicable even for affected versions that have reached End of Technical Support.