CVE-2015-5058

F5 BIG-IP and BIG-IQ - Memory Leak via Crafted ICMP Packets

Title source: llm
STIX 2.1

Description

Memory leak in the virtual server component in F5 Big-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and PEM 11.5.x before 11.5.1 HF10, 11.5.3 before HF1, and 11.6.0 before HF5, BIG-IQ Cloud, Device, and Security 4.4.0 through 4.5.0, and BIG-IQ ADC 4.5.0 allows remote attackers to cause a denial of service (memory consumption) via a large number of crafted ICMP packets.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1033334

Scores

EPSS 0.0082
EPSS Percentile 74.6%

Details

CWE
CWE-399
Status published
Products (31)
f5/big-ip_access_policy_manager 11.5.1
f5/big-ip_access_policy_manager 11.5.3
f5/big-ip_access_policy_manager 11.6.0
f5/big-ip_advanced_firewall_manager 11.5.1
f5/big-ip_advanced_firewall_manager 11.5.3
f5/big-ip_advanced_firewall_manager 11.6.0
f5/big-ip_analytics 11.5.1
f5/big-ip_analytics 11.5.3
f5/big-ip_analytics 11.6.0
f5/big-ip_application_acceleration_manager 11.5.1
... and 21 more
Published Aug 24, 2015
Tracked Since Feb 18, 2026