F5-K000150598: High severity f5 big-ip access policy manager vulnerability
Published May 7, 2025
·Updated
When a BIG-IP APM PingAccess profile is configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate.
Affected Software
3 affected componentsFixes available
f5 BIG-IP (APM)>=17.1.0<=17.1.2
17.1.2.2
f5 BIG-IP (APM)>=16.1.0<=16.1.5
16.1.6
f5 BIG-IP (APM)>=15.1.0<=15.1.10
-15.1.10.7.0.4.5-
Event History
May 7, 2025
Advisory Published
via F5·01:19 PM
Frequently Asked Questions
1
What is the severity of F5-K000150598?
The severity of F5-K000150598 is critical as it can lead to the termination of the Traffic Management Microkernel.
2
How do I fix F5-K000150598?
To fix F5-K000150598, upgrade to the recommended versions provided by F5 for your specific BIG-IP APM software.
3
Which versions are affected by F5-K000150598?
Affected versions of F5 BIG-IP APM include versions from 15.1.0 to 15.1.10, 16.1.0 to 16.1.5, and 17.1.0 to 17.1.2.
4
What products does F5-K000150598 affect?
F5-K000150598 affects the F5 BIG-IP Access Policy Manager (APM) implementation.
5
Is there a workaround for F5-K000150598?
Currently, there are no documented workarounds for F5-K000150598; upgrading is the recommended solution.