F5-K000158112: Integer Overflow
Published Dec 9, 2025
·Updated
ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
Affected Software
6 affected componentsFixes available
F5 BIG-IP=21.0.0
21.1.0
F5 BIG-IP>=17.5.0<=17.5.1, >=17.1.0<=17.1.3
17.5.1.417.1.3.2
F5 BIG-IP>=16.1.0<=16.1.6
F5 BIG-IP>=15.1.0<=15.1.10
F5 BIG-IQ Centralized Management>=8.3.0<=8.4.0
F5 Traffix SDC=5.2.0
Event History
Dec 9, 2025
Advisory Published
via F5·05:49 PM
Data Sourced
via F5·05:49 PM
DescriptionSeverityWeaknessAffected Software
Dec 18, 58288
Event
via F5·04:25 PM
Frequently Asked Questions
1
What is the severity of F5-K000158112?
F5-K000158112 is classified as a denial of service vulnerability.
2
How do I fix F5-K000158112?
To fix F5-K000158112, upgrade your affected F5 BIG-IP or other products to the latest patched version.
3
Which products are affected by F5-K000158112?
F5-K000158112 affects multiple F5 products including BIG-IP versions between 15.1.0 and 21.0.0 and other specific versions of BIG-IQ and F5OS.
4
What type of attack does F5-K000158112 allow?
F5-K000158112 allows for a denial of service attack through manipulation of ICMP Echo Reply packets.
5
Can F5-K000158112 lead to data loss?
While F5-K000158112 primarily leads to application errors, it may indirectly result in incorrect data collection.