CVE-2022-29479 PUBLISHED CVSS 5 MEDIUM

On F5 BIG-IP 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all versions of 12.1.x and 11.6.x, and F5 BIG-IQ Centralized Management all versions of 8.x and 7.x, when an IPv6 self IP address is configured and the ipv6.strictcompliance database key is enabled (disabled by default) on a BIG-IP system, undisclosed packets may cause decreased performance. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated

EPSS 0.87% · 75.0th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.87%
75.0th percentile

Affected Products

VendorProductVersions
f5big-ip_advanced_firewall_manager15.1.2, 15.1.3, 15.1.1
f5big-ip_domain_name_system11.6.2, 17.0.0, 16.1.2
F5BIG-IQ Centralized Management7.x, 8.x
f5big-ip_global_traffic_manager11.6.1, 17.0.0, 16.1.2
f5big-ip_application_acceleration_manager15.1.3, 17.0.0, 16.1.2
f5big-ip_local_traffic_manager17.0.0, 12.1.2, 12.1.3
f5big-ip_analytics13.1.5, 12.1.5, 12.1.6
F5BIG-IP13.1.x, 14.1.x, 15.1.x
f5big-ip_link_controller12.1.4, 11.6.1, 11.6.2
f5big-ip_fraud_protection_service17.0.0, 11.6.1, 16.1.2
f5big-ip_policy_enforcement_manager12.1.2, 12.1.1, 12.1.3
f5big-iq_centralized_management7.0.0, 8.2.0, 8.1.0
f5big-ip_application_security_manager15.1.0, 15.1.4, 15.1.5
f5big-ip_access_policy_manager16.1.1, 15.1.3, 15.1.2

Timeline

References

…and 25 more

Open in Interactive Console →