F5-K000148412: High severity F5 BIG-IP Next Central Manager vulnerability
Published Feb 5, 2025
·Updated
When BIG-IP Next Central Manager is running, undisclosed requests to the BIG-IP Next Central Manager API can cause the BIG-IP Next Central Manager Node's Kubernetes service to terminate.
Affected Software
1 affected componentFixes available
F5 BIG-IP Next Central Manager>=20.2.0<=20.2.1
20.3.0
Event History
Feb 5, 2025
Advisory Published
via F5·02:07 PM
Data Sourced
via F5·02:07 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of F5-K000148412?
F5-K000148412 is classified as a critical vulnerability due to its potential to disrupt service.
2
How do I fix F5-K000148412?
To fix F5-K000148412, upgrade your F5 BIG-IP Next Central Manager to version 20.3.0 or later.
3
What could happen if F5-K000148412 is exploited?
Exploitation of F5-K000148412 can result in the termination of the Kubernetes service associated with the BIG-IP Next Central Manager.
4
Is my version vulnerable to F5-K000148412?
Yes, versions 20.2.0 to 20.2.1 of the F5 BIG-IP Next Central Manager are vulnerable to F5-K000148412.
5
What are the affected products of F5-K000148412?
F5-K000148412 affects the F5 BIG-IP Next Central Manager running on versions between 20.2.0 and 20.2.1.