7.5
Advisory Published
Updated

F5-K000133467

First published: Tue Oct 10 2023(Updated: )

Undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate when a client-side HTTP/2 profile and the HTTP MRF Router option are enabled for a virtual server and an iRule using the HTTP_REQUEST event or Local Traffic Policy are associated with the virtual server. TMM can also terminate when a client-side HTTP/2 profile and the HTTP MRF Router option are enabled, regardless of the presence of the iRule.

Affected SoftwareAffected VersionHow to fix
F5 BIG-IP Next>=1.6.0<=1.8.2
F5 BIG-IP and BIG-IQ Centralized Management>=17.1.0<=17.1.1
17.1.1.1
F5 BIG-IP and BIG-IQ Centralized Management>=16.1.0<=16.1.4
16.1.4.2
F5 BIG-IP and BIG-IQ Centralized Management

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of F5-K000133467?

    F5-K000133467 is classified as a medium severity vulnerability due to its potential to cause service disruption.

  • How do I fix F5-K000133467?

    To remediate F5-K000133467, you should upgrade to the appropriate fixed version of BIG-IP listed in the advisory.

  • Which versions of F5 BIG-IP are affected by F5-K000133467?

    F5-K000133467 affects F5 BIG-IP versions 17.1.0 to 17.1.1, 16.1.0 to 16.1.4, and any version of BIG-IP Next SPK between 1.6.0 and 1.8.2.

  • What is impacted by F5-K000133467?

    F5-K000133467 may lead to unexpected termination of the Traffic Management Microkernel (TMM) when certain configurations are used.

  • What should I monitor for if I have F5-K000133467?

    If you have F5-K000133467, monitor your system for unexpected terminations of TMM and ensure your HTTP/2 profile and iRule configurations are secure.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203