CVE-2025-54858
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:51
- Zuletzt bearbeitet 21.10.2025 20:13:30
When a BIG-IP Advanced WAF or BIG-IP ASM Security Policy is configured with a JSON content profile that has a malformed JSON schema, and the security policy is applied to a virtual server, undisclosed requests can cause the bd process to terminate. ...
CVE-2025-61951
- EPSS 0.09%
- Veröffentlicht 15.10.2025 13:55:50
- Zuletzt bearbeitet 21.10.2025 20:33:42
Undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate. This issue may occur when a Datagram Transport Layer Security (DTLS) 1.2 virtual server is enabled with a Server SSL profile that is configured with a certificate, ...
CVE-2025-53856
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:49
- Zuletzt bearbeitet 21.10.2025 20:19:02
When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packet Velocity Acceleration (ePVA) feature, undisclosed traffic can cause the Traffic Management Microkernel (TMM)...
CVE-2025-58424
- EPSS 0.08%
- Veröffentlicht 15.10.2025 13:55:47
- Zuletzt bearbeitet 22.10.2025 20:58:41
On BIG-IP systems, undisclosed traffic can cause data corruption and unauthorized data modification in protocols which do not have message integrity protection. Note: Software versions which have reached End of Technical Support (EoTS) are not evalu...
CVE-2025-61938
- EPSS 0.27%
- Veröffentlicht 15.10.2025 13:55:47
- Zuletzt bearbeitet 21.10.2025 20:30:15
When a BIG-IP Advanced WAF or ASM security policy is configured with a URL greater than 1024 characters in length for the Data Guard Protection Enforcement setting, either manually or through the automatic Policy Builder, the bd process can terminate...
CVE-2025-59781
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:46
- Zuletzt bearbeitet 22.10.2025 21:02:07
When DNS cache is configured on a BIG-IP or BIG-IP Next CNF virtual server, undisclosed DNS queries can cause an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
CVE-2025-46706
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:45
- Zuletzt bearbeitet 21.10.2025 18:54:09
When an iRule containing the HTTP::respond command is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evalua...
CVE-2025-48008
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:44
- Zuletzt bearbeitet 21.10.2025 18:53:07
When a TCP profile with Multipath TCP (MPTCP) enabled is configured on a virtual server, undisclosed traffic along with conditions beyond the attacker's control can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions...
CVE-2025-58153
- EPSS 0.1%
- Veröffentlicht 15.10.2025 13:55:44
- Zuletzt bearbeitet 22.10.2025 20:50:21
Under undisclosed traffic conditions along with conditions beyond the attacker's control, hardware systems with a High-Speed Bridge (HSB) may experience a lockup of the HSB. Note: Software versions which have reached End of Technical Support (EoTS)...
CVE-2025-58474
- EPSS 0.11%
- Veröffentlicht 15.10.2025 13:55:43
- Zuletzt bearbeitet 22.10.2025 21:00:17
When BIG-IP Advanced WAF is configured on a virtual server with Server-Side Request Forgery (SSRF) protection or when an NGINX server is configured with App Protect Bot Defense, undisclosed requests can disrupt new client requests. Note: Software ve...