CVE-2025-24312:The vulnerability CVE-2025-24312 is associated with F5's BIG-IP AFM product. When BIG-IP AFM is provisioned with IPS module enabled and protocol inspection profile is configured on a virtual server or firewall rule or policy, undisclosed traffic can cause an increase in CPU resource utilization.

splash
Back

Description Preview

The vulnerability CVE-2025-24312 is a high severity issue that affects F5's BIG-IP AFM product. The problem arises when BIG-IP AFM is provisioned with the IPS module enabled and a protocol inspection profile is configured on a virtual server or firewall rule or policy. In such a scenario, undisclosed traffic can cause an increase in CPU resource utilization, potentially leading to a denial of service. The vulnerability has a CVSS v3.1 base score of 7.5 and a CVSS v4.0 base score of 8.7.

Overview

The vulnerability is associated with the allocation of resources without limits or throttling (CWE-770). It affects BIG-IP versions 17.1.0, 16.1.0, and 15.1.0. However, certain hotfixes for versions 16.1.0 and 15.1.0 are unaffected. The BIG-IP Next CNF product is also affected for versions less than 1.4.0.

Remediation

Users are advised to apply the hotfixes "Hotfix-BIGIP-16.1.5.2.0.7.5-ENG.iso" for version 16.1.0 and "Hotfix-BIGIP-15.1.10.6.0.11.6-ENG.iso" for version 15.1.0. For BIG-IP Next CNF, users should upgrade to version 1.4.0 or later. For more detailed information and assistance, users should refer to the vendor advisory.

References

Vendor Advisory: F5 Vendor Advisory

Industry ExposureMost to least
This section illustrates the prevalence of a specific Common Vulnerabilities and Exposures (CVE) across various industries based on customer reports. The ranking displays industries from the most to least affected by this particular vulnerability, offering valuable insight into where this CVE has been most frequently observed. This information can help organizations within these sectors prioritize their security efforts, understand their relative risk exposure compared to their peers, and focus remediation strategies where they are most needed. By understanding the industry-specific impact, organizations can make more informed decisions regarding patching, resource allocation, and overall risk management related to this CVE.

  1. Management of Companies & Enterprises
    Management of Companies & Enterprises
  2. Professional, Scientific, & Technical Services
    Professional, Scientific, & Technical Services
  3. Transportation & Warehousing
    Transportation & Warehousing
  4. Accommodation & Food Services
    Accommodation & Food Services
  5. Administrative, Support, Waste Management & Remediation Services
    Administrative, Support, Waste Management & Remediation Services
  6. Agriculture, Forestry Fishing & Hunting
    Agriculture, Forestry Fishing & Hunting
  7. Arts, Entertainment & Recreation
    Arts, Entertainment & Recreation
  8. Construction
    Construction
  9. Educational Services
    Educational Services
  10. Finance and Insurance
    Finance and Insurance
  11. Health Care & Social Assistance
    Health Care & Social Assistance
  12. Information
    Information
  13. Manufacturing
    Manufacturing
  14. Mining
    Mining
  15. Other Services (except Public Administration)
    Other Services (except Public Administration)
  16. Public Administration
    Public Administration
  17. Real Estate Rental & Leasing
    Real Estate Rental & Leasing
  18. Retail Trade
    Retail Trade
  19. Utilities
    Utilities
  20. Wholesale Trade
    Wholesale Trade

Focus on What Matters

  1. See Everything.
  2. Identify True Risk.
  3. Proactively Mitigate Threats.

Let's talk!

background
Armis Vulnerability Intelligence Database