PT-2026-40661 · F5 · Big-Ip

Published

2026-05-13

·

Updated

2026-05-17

·

CVE-2026-41227

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions F5 BIG-IP versions prior to 17.1.3.1 F5 BIG-IP versions prior to 17.5.1.4
Description On an HTTP/2 virtual server with Layer 7 DoS Protection configured, undisclosed traffic can lead to excessive resource allocation and increased memory consumption. This condition may cause the Traffic Management Microkernel (TMM) process to terminate.
Recommendations Update to version 17.1.3.1 or later. Update to version 17.5.1.4 or later.

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2026-41227

Affected Products

Big-Ip