PT-2025-42326 · F5 · F5 Big-Ip

Published

2025-10-15

·

Updated

2025-10-15

·

CVE-2025-53856

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions F5 BIG-IP versions (affected versions not specified)
Description An issue exists in F5 BIG-IP systems utilizing the embedded Packet Velocity Acceleration (ePVA) feature. Undisclosed traffic can lead to the termination of the Traffic Management Microkernel (TMM). This can result in a denial-of-service condition. The vulnerability affects virtual servers, network address translation (NAT) objects, or secure network address translation (SNAT) objects that employ the ePVA feature.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-53856

Affected Products

F5 Big-Ip