CVE-2025-41431

Severity CVSS v4.0:
HIGH
Type:
CWE-787 Out-of-bounds Write
Publication date:
07/05/2025
Last modified:
06/08/2025

Description

When connection mirroring is configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel (TMM) to terminate in the standby BIG-IP systems in a traffic group. <br /> <br /> <br /> Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:f5:big-ip_access_policy_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_advanced_firewall_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_analytics:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_application_acceleration_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_application_security_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_domain_name_system:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_fraud_protection_service:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_global_traffic_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_link_controller:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_local_traffic_manager:17.1.2:*:*:*:*:*:*:*
cpe:2.3:a:f5:big-ip_policy_enforcement_manager:17.1.2:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools