Memory Resource Utilization Issue in F5 Networks Products
CVE-2025-46706

8.7HIGH

Key Information:

Vendor

F5

Vendor
CVE Published:
15 October 2025

What is CVE-2025-46706?

A vulnerability exists within F5 BIG-IP products where the configuration of an iRule containing the HTTP::respond command on a virtual server can lead to increased memory resource utilization caused by undisclosed requests. This can affect the performance and reliability of the service, particularly if the facility is subjected to unexpected or malicious traffic. It is essential for users of the affected versions to review their configurations and apply necessary updates.

Affected Version(s)

BIG-IP 17.1.0 < 17.1.2.2

BIG-IP 16.1.0 < 16.1.6

BIG-IP Next CNF 1.1.0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

F5
.