F5-K000159900: High severity F5 BIG-IP Next for Kubernetes vulnerability
Published Feb 6, 2026
·Updated
Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.
Affected Software
3 affected componentsFixes available
F5 BIG-IP Next for Kubernetes=2.1.0
2.2.0
F5 F5OS-A>=1.8.0<=1.8.3
F5 F5OS-C>=1.8.0<=1.8.2
Event History
Feb 6, 2026
Advisory Published
via F5·05:29 PM
Data Sourced
via F5·05:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of F5-K000159900?
The severity of F5-K000159900 is critical due to the potential for denial of service from non-linear processing times.
2
How do I fix F5-K000159900?
To fix F5-K000159900, upgrade to F5 BIG-IP Next for Kubernetes version 2.2.0 or F5OS-A version 1.8.3 or higher.
3
What types of systems are affected by F5-K000159900?
F5-K000159900 affects F5 BIG-IP Next for Kubernetes, F5OS-A, and F5OS-C in specified versions.
4
Can F5-K000159900 lead to a security breach?
Yes, F5-K000159900 can lead to a security breach by allowing denial of service attacks.
5
Is there a workaround for F5-K000159900 until I can update?
There are no known effective workarounds for F5-K000159900; the best approach is to update the affected software.