F5-K000149952: High severity f5 big-ip policy enforcement manager vulnerability
When a BIG-IP PEM system is licensed with URL categorization, and the URL categorization policy or an iRule with the urlcat command is enabled on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of F5-K000149952?
The severity of F5-K000149952 is classified as high due to the potential for Traffic Management Microkernel (TMM) termination.
How do I fix F5-K000149952?
To fix F5-K000149952, upgrade to the recommended versions: 17.1.2.2, 16.1.6, or ensure you are on a fixed version for 15.1.x.
What systems are affected by F5-K000149952?
F5-K000149952 affects F5 BIG-IP PEM systems licensed with URL categorization and running specific vulnerable versions.
What is the impact of F5-K000149952?
The impact of F5-K000149952 is that it may cause the Traffic Management Microkernel (TMM) to unexpectedly terminate on affected virtual servers.
Is there a workaround for F5-K000149952?
Currently, F5 recommends upgrading to a fixed version as the primary method of addressing F5-K000149952, and there are no published workarounds.