F5 Product Security Update Advisory (CVE-2025-23412)

Overview

We have released security updates to fix vulnerabilities in F5 products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-23412

BIG-IP (APM) Versions: 17.1.0 through 17.1.1 (inclusive)
BIG-IP (APM) Versions: 16.1.3 through 16.1.4 (inclusive)

 

 

Resolved Vulnerabilities

Vulnerability that causes the Traffic Management Microkernel (TMM) to crash when a BIG-IP access profile is configured on a virtual server (CVE-2025-23412)

 

 

Vulnerability Patches

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
 

 

CVE-2025-23412

BIG-IP (APM) Version: 17.1.2
BIG-IP (APM) Version: 16.1.5

 

 

References

[1] K000141003: BIG-IP APM access profile vulnerability CVE-2025-23412
https://my.f5.com/manage/s/article/K000141003