F5-K000134516: High severity f5 big-ip and big-iq centralized management vulnerability
When an SSL Client Certificate LDAP or Certificate Revocation List Distribution Point (CRLDP) authentication profile is configured on a virtual server, undisclosed requests can cause an increase in CPU resource utilization.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000134516?
The F5-K000134516 vulnerability has a moderate severity level due to potential CPU resource exhaustion.
How do I fix F5-K000134516?
To resolve F5-K000134516, upgrade your F5 BIG-IP to the specified remedial versions: 17.1.1, 16.1.4, or 15.1.9.
What versions of F5 BIG-IP are affected by F5-K000134516?
F5-K000134516 affects F5 BIG-IP versions 17.1.0, 16.1.0 to 16.1.3, and 15.1.0 to 15.1.8.
Can F5-K000134516 lead to a denial of service?
Yes, F5-K000134516 can lead to degradation of service due to increased CPU utilization from undisclosed requests.
Is it safe to use F5 BIG-IP without patching for F5-K000134516?
It is not recommended to use F5 BIG-IP without patching for F5-K000134516 as it poses a risk of resource exhaustion.