F5-K000149959: Medium severity f5 nginx unit vulnerability
Published Mar 3, 2025
·Updated
When NGINX Unit with the Java Language Module is in use, undisclosed requests can lead to an infinite loop and cause an increase in CPU resource utilization.
Affected Software
1 affected componentFixes available
F5 NGINX Unit>=1.29.1<=1.34.1
1.34.2
Event History
Mar 3, 2025
Advisory Published
via F5·03:01 PM
Frequently Asked Questions
1
What is the severity of F5-K000149959?
The severity of F5-K000149959 is high due to the potential for an infinite loop resulting in elevated CPU resource utilization.
2
How do I fix F5-K000149959?
To fix F5-K000149959, upgrade NGINX Unit to version 1.34.2 or later.
3
What versions of NGINX Unit are affected by F5-K000149959?
F5-K000149959 affects NGINX Unit versions from 1.29.1 to 1.34.1, inclusive.
4
What risks does F5-K000149959 pose to my system?
F5-K000149959 can lead to degraded performance and potential service disruption due to increased CPU usage.
5
Is there a workaround for F5-K000149959?
There is no specific workaround for F5-K000149959; upgrading to a fixed version is recommended.