High CPU Resource Utilization in BIG-IP AFM with IPS Module by F5 Networks
CVE-2025-24312

8.7HIGH

Key Information:

Vendor
F5
Vendor
CVE Published:
5 February 2025

Summary

An issue has been identified in the BIG-IP AFM from F5 Networks where the IPS module, when enabled with a configured protocol inspection profile on a virtual server or firewall rule, may lead to excessive CPU resource utilization. This can potentially impact system performance as undisclosed traffic is processed, complicating network management. It is essential for users to review affected configurations and monitor resource usage to mitigate potential disruptions.

Affected Version(s)

BIG-IP 17.1.0 < 17.1.2

BIG-IP 16.1.0

BIG-IP 15.1.0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

F5
.