F5-K000150410: Medium severity f5 big-ip and big-iq centralized management vulnerability
Published Mar 24, 2025
·Updated
setkey in agent/helpers/tablecontainer.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to remotely cause the instance to crash via a crafted UDP packet, resulting in Denial of Service.
Affected Software
1 affected component
F5 BIG-IQ Centralized Management>=8.2.0<=8.3.0
Event History
Mar 24, 2025
Advisory Published
via F5·03:39 PM
Frequently Asked Questions
1
What is the severity of F5-K000150410?
The severity of F5-K000150410 is classified as a Denial of Service vulnerability.
2
How do I fix F5-K000150410?
To fix F5-K000150410, upgrade to Net-SNMP version 5.8 or later.
3
What exploit does F5-K000150410 allow?
F5-K000150410 allows an authenticated attacker to remotely crash the instance through a crafted UDP packet.
4
What versions are affected by F5-K000150410?
F5-K000150410 affects F5 BIG-IQ Centralized Management versions from 8.2.0 to 8.3.0.
5
Is authentication required to exploit F5-K000150410?
Yes, authentication is required to exploit F5-K000150410.