Security updates F5 BIG-IP: Attackers can disable network traffic

Multiple security vulnerabilities affect various F5 BIG-IP appliances.

listen Print view
A symbolic update button on a keyboard.

(Image: Tatiana Popova/Shutterstock.com)

1 min. read

If attackers successfully exploit vulnerabilities in BIG-IP appliances such as Advanced WAF/ASM or APM, they can cause crashes or view protected data. Secured versions are available for download. So far, there are no reports of attacks.

A vulnerability (CVE-2026-22548 “high”) in BIG-IP Advanced WAF/ASM is considered the most dangerous. As a warning notice indicates, remote DoS attacks are possible without authentication. This causes the bd process to crash, leading to an interruption of network traffic. The developers are not currently detailing how such an attack could occur. However, version 17.1.3 is equipped to handle this.

Videos by heise

The remaining vulnerabilities are mostly classified as “low” in terms of threat level. After successful attacks, attackers can access sensitive data that should be isolated, for example, in the context of BIG-IP APM and APM Clients (CVE-2026-20730). Admins can find more information about the vulnerabilities and security updates in the linked warning notices.

(des)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.