F5-K000139217: Medium severity F5 BIG-IP vulnerability
Under certain conditions, a data leak may occur in the Traffic Management Microkernels (TMMs) of BIG-IP tenants running on VELOS and rSeries platforms. This leak occurs randomly and cannot be deliberately triggered. If it occurs, it may leak up to 64 bytes of non-contiguous randomized bytes. Under rare conditions, this may lead to a TMM restart, affecting availability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000139217?
The severity of F5-K000139217 is classified as potential data leak without consistent exploitability by an attacker.
How do I fix F5-K000139217?
To mitigate F5-K000139217, upgrade your BIG-IP software to version 15.1.10 or later.
Which platforms are affected by F5-K000139217?
F5-K000139217 affects BIG-IP tenants running on VELOS and rSeries platforms.
Can F5-K000139217 be exploited by an attacker?
F5-K000139217 cannot be reliably exploited by an attacker due to its inconsistent reproducibility.
What software versions are impacted by F5-K000139217?
F5-K000139217 impacts F5 BIG-IP versions from 15.1.0 to 15.1.9.