Impact
When a BIG‑IP appliance is configured with DNS caching, undisclosed traffic can trigger the Traffic Management Microkernel (TMM) to terminate. The TMM crash disables the DNS service, resulting in a denial‑of‑service condition for any operation that relies on DNS resolution. This flaw is classified as CWE‑824 and presents purely a service availability impact without exposing confidentiality or integrity.
Affected Systems
The vulnerability affects F5 BIG‑IP appliances that have the DNS caching feature enabled on virtual servers, through a DNS profile, SSL Orchestrator, or Advanced WAF DoS protection. All actively supported BIG‑IP releases are impacted unless a vendor patch has been applied; releases that have reached End of Technical Support are excluded from the advisory.
Risk and Exploitability
The CVSS score of 8.7 indicates a high severity for this denial‑of‑service condition. The EPSS score of less than 1% suggests a low probability of exploitation. The vulnerability is not listed in CISA KEV, meaning no publicly documented exploitation has been reported. The attack vector appears to be network‑based: unexpected traffic targeting the DNS cache can provoke the TMM crash, causing the service to stop.
OpenCVE Enrichment