Rewterz
Rewterz Threat Alert – Bitter APT Group – Active IOCs
January 5, 2024
Rewterz
Rewterz Threat Advisory – CVE-2023-32480 – Dell BIOS Vulnerability
January 5, 2024

Rewterz Threat Advisory – CVE-2023-41085 – F5 BIG-IP Vulnerability

Severity

High

Analysis Summary

CVE-2023-41085

F5 BIG-IP is vulnerable to a denial of service, caused by a flaw when IPsec is configured on a virtual server. By sending a specially crafted request, a remote attacker could exploit this vulnerability to cause the Traffic Management Microkernel (TMM) to terminate.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2023-41085

Affected Vendors

F5

Affected Products

  • F5 BIG-IP 14.1.0
  • F5 BIG-IP 13.1.0
  • F5 BIG-IP 15.1.0
  • F5 BIG-IP 16.1.0
  • F5 BIG-IP 13.1.5
  • F5 BIG-IP 16.1.3
  • F5 BIG-IP 14.1.5
  • F5 BIG-IP 15.1.8

Remediation

Refer to F5 Security Advisory for patch, upgrade or suggested workaround information.

F5 Security Advisory