F5-K08182564: High severity f5 big-ip and big-iq centralized management vulnerability
Published Feb 1, 2023
·Updated
When a SIP profile is configured on a Message Routing type virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate.
Affected Software
5 affected componentsFixes available
F5 BIG-IP
17.0.0
F5 BIG-IP>=16.1.0<=16.1.3
16.1.3.3
F5 BIG-IP>=15.1.0<=15.1.8
15.1.8.1
F5 BIG-IP>=14.1.0<=14.1.5
14.1.5.3
F5 BIG-IP>=13.1.0<=13.1.5
Event History
Feb 1, 2023
Advisory Published
via F5·12:59 PM
Frequently Asked Questions
1
What is the severity of F5-K08182564?
The severity of F5-K08182564 is rated as critical due to the potential for TMM termination.
2
How do I fix F5-K08182564?
To fix F5-K08182564, upgrade to the recommended versions: 17.0.0, 16.1.3.3, 15.1.8.1, or 14.1.5.3.
3
What types of traffic can trigger F5-K08182564?
Undisclosed traffic directed to a SIP profile on a Message Routing type virtual server can trigger F5-K08182564.
4
What products are affected by F5-K08182564?
The affected products include various versions of F5 BIG-IP, including 13.x, 14.x, 15.x, 16.x, and 17.x.
5
Is there a workaround for F5-K08182564?
There is no specific workaround for F5-K08182564; upgrading to fixed versions is the advised resolution.