F5 Products Multiple Vulnerabilities
Release Date: 29 Jul 2026
RISK: High Risk
TYPE: Operating Systems - Networks OS
Multiple vulnerabilities were identified in F5 Products. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, sensitive information disclosure and remote code execution on the targeted system.
Note:
No patch is currently available for CVE-2025-48976 of BIG-IP Next SPK version 2.0.0 - 2.0.3. Hence, the risk level is rated as High Risk.
Impact
- Denial of Service
- Remote Code Execution
- Information Disclosure
System / Technologies affected
BIG-IP Next for Kubernetes
- version 2.0.0 - 2.2.1
- version 2.3.0
BIG-IP Next SPK
- version 1.7.0 - 1.7.16
- version 1.8.0 - 1.9.2
- version 2.0.0 - 2.0.3
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://my.f5.com/manage/s/article/K000162114
- https://my.f5.com/manage/s/article/K000162478
- https://my.f5.com/manage/s/article/K000162479
沒有留言:
發佈留言