CVE-2025-53856
🟡 Monitoruj
Błąd w ePVA w BIG-IP powoduje awarię mikrojądra zarządzania ruchem.
CVSS
7.5
EPSS
0.4%
Exploit
none
Vendor
f5
Opis źródłowy (NVD)
When a virtual server, network address translation (NAT) object, or secure network address translation (SNAT) object uses the embedded Packet Velocity Acceleration (ePVA) feature, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate. To determine which BIG-IP platforms have an ePVA chip refer to K12837: Overview of the ePVA feature https://my.f5.com/manage/s/article/K12837 . Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.5 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.4% |
| Opublikowano (NVD) | 2025-10-15 14:15:48 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 12:10:00 UTC |
Referencje
- https://my.f5.com/manage/s/article/K000156707 ([email protected]) [Vendor Advisory]