First published: Wed Feb 14 2024(Updated: )
For unspecified traffic patterns, BIG-IP AFM IPS engine may spend an excessive amount of time matching the traffic against signatures, resulting in Traffic Management Microkernel (TMM) restarting and traffic disruption.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP (AFM + IPS) | =17.1.0 | 17.1.1 |
F5 BIG-IP (AFM + IPS) | >=16.1.0<=16.1.3 | 16.1.4 |
F5 BIG-IP (AFM + IPS) | >=15.1.0<=15.1.8 | 15.1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
F5-K000137595 is classified as a medium severity vulnerability due to the potential for traffic disruption.
To mitigate F5-K000137595, upgrade to a fixed version of BIG-IP AFM + IPS such as 17.1.1, 16.1.4, or 15.1.9.
F5-K000137595 may lead to excessive processing time for traffic, causing the Traffic Management Microkernel (TMM) to restart and disrupting traffic flow.
F5-K000137595 affects BIG-IP AFM + IPS versions 17.1.0 and earlier, versions in the 16.1.x range before 16.1.4, and versions in the 15.1.x range before 15.1.9.
There is no documented workaround for F5-K000137595, so upgrading to the recommended versions is advised.