QID 379397
Date Published: 2024-02-22
QID 379397: F5 BIG-IP PEM Denial of Service (DoS) Vulnerability (K000135946)
CVE-2024-21849: When an Advanced WAF/ASM security policy and a Websockets profile are configured on a virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) process to terminate.
Affected Versions:
F5 BIG-IP PEM version 17.1.0 - 17.1.1
F5 BIG-IP PEM version 16.1.0 - 16.1.4
F5 BIG-IP PEM version 15.1.0 - 15.1.10
QID Detection Logic (Authenticated):
This QID checks for vulnerable version of F5 BIG-IP by running the 'tmsh -q show /sys version' command.
Successful exploitation of this vulnerability may allow a remote unauthenticated attacker to cause a denial-of-service (DoS) on the BIG-IP system.
Solution
Please check the fixed versions released by the vendor in K000135946
Vendor References
- K000135946 -
my.f5.com/manage/s/article/K000135946
CVEs related to QID 379397
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| K000135946 |
|