First published: Wed Feb 01 2023(Updated: )
When a client-side HTTP/2 profile and the HTTP MRF Router option are enabled for a virtual server, undisclosed requests can cause an increase in memory resource utilization.
Affected Software | Affected Version | How to fix |
---|---|---|
F5 BIG-IP and BIG-IQ Centralized Management | =17.0.0 | 17.1.0 |
F5 BIG-IP and BIG-IQ Centralized Management | >=16.1.0<=16.1.3 | 16.1.3.3 |
F5 BIG-IP and BIG-IQ Centralized Management | ||
F5 BIG-IP Service Proxy for Kubernetes | =1.6.0 | 1.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of F5-K56676554 is classified as critical due to the potential for increased memory utilization.
To resolve F5-K56676554, it is recommended to apply the latest patches or updates provided by F5.
F5-K56676554 impacts multiple versions of F5 BIG-IP, including 17.0.0, 16.1.0 to 16.1.3.3, and 1.6.0 of BIG-IP Service Proxy for Kubernetes.
Symptoms of F5-K56676554 include increased memory resource utilization leading to potential performance degradation.
Currently, the recommended approach for F5-K56676554 is to disable the HTTP/2 profile and HTTP MRF Router on the affected virtual server until a patch is applied.