When an SSL profile is configured on a Virtual Server, undisclosed traffic can cause an increase in CPU or SSL accelerator resource utilization.  
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
                
            References
                    | Link | Resource | 
|---|---|
| https://my.f5.com/manage/s/article/K000133132 | Vendor Advisory | 
| https://my.f5.com/manage/s/article/K000133132 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
            
            
  | 
    
History
                    21 Nov 2024, 07:48
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://my.f5.com/manage/s/article/K000133132 - Vendor Advisory | 
05 Oct 2023, 14:59
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 5.3  | 
10 May 2023, 18:41
| Type | Values Removed | Values Added | 
|---|---|---|
| References | (MISC) https://my.f5.com/manage/s/article/K000133132 - Vendor Advisory | |
| First Time | 
        
        F5 big-ip Edge Gateway
         F5 big-ip Policy Enforcement Manager F5 big-ip Global Traffic Manager F5 big-ip Ddos Hybrid Defender F5 big-ip Local Traffic Manager F5 big-ip Application Security Manager F5 big-ip Domain Name System F5 big-ip Access Policy Manager F5 F5 big-ip Websafe F5 big-ip Application Acceleration Manager F5 big-ip Next Service Proxy For Kubernetes F5 big-ip Advanced Web Application Firewall F5 big-ip Application Visibility And Reporting F5 big-ip Ssl Orchestrator F5 big-ip Analytics F5 big-ip Carrier-grade Nat F5 big-ip Advanced Firewall Manager F5 big-ip Link Controller F5 big-ip Webaccelerator F5 big-ip Fraud Protection Service  | 
|
| CPE | cpe:2.3:a:f5:big-ip_edge_gateway:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_domain_name_system:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_security_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_webaccelerator:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ssl_orchestrator:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_analytics:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_visibility_and_reporting:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_carrier-grade_nat:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_security_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_web_application_firewall:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_carrier-grade_nat:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_fraud_protection_service:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_global_traffic_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_visibility_and_reporting:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ddos_hybrid_defender:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_policy_enforcement_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_link_controller:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_analytics:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_next_service_proxy_for_kubernetes:1.5.0:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_acceleration_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_visibility_and_reporting:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_webaccelerator:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_security_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_policy_enforcement_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_websafe:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_acceleration_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_domain_name_system:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_carrier-grade_nat:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_local_traffic_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_global_traffic_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ddos_hybrid_defender:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_edge_gateway:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_edge_gateway:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_firewall_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_domain_name_system:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_web_application_firewall:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_local_traffic_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_link_controller:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_policy_enforcement_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ssl_orchestrator:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ddos_hybrid_defender:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_websafe:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_local_traffic_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_global_traffic_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_fraud_protection_service:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_application_acceleration_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_access_policy_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_access_policy_manager:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_link_controller:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_webaccelerator:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_access_policy_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_firewall_manager:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_firewall_manager:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_analytics:15.1.4.1:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_fraud_protection_service:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_websafe:16.1.2:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_advanced_web_application_firewall:14.1.5:*:*:*:*:*:*:* cpe:2.3:a:f5:big-ip_ssl_orchestrator:14.1.5:*:*:*:*:*:*:*  | 
|
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 7.5  | 
03 May 2023, 15:23
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-05-03 15:15
Updated : 2024-11-21 07:48
NVD link : CVE-2023-24594
Mitre link : CVE-2023-24594
CVE.ORG link : CVE-2023-24594
JSON object : View
Products Affected
                f5
- big-ip_application_security_manager
 - big-ip_websafe
 - big-ip_domain_name_system
 - big-ip_ssl_orchestrator
 - big-ip_global_traffic_manager
 - big-ip_advanced_web_application_firewall
 - big-ip_advanced_firewall_manager
 - big-ip_access_policy_manager
 - big-ip_application_visibility_and_reporting
 - big-ip_carrier-grade_nat
 - big-ip_edge_gateway
 - big-ip_application_acceleration_manager
 - big-ip_ddos_hybrid_defender
 - big-ip_webaccelerator
 - big-ip_next_service_proxy_for_kubernetes
 - big-ip_link_controller
 - big-ip_fraud_protection_service
 - big-ip_local_traffic_manager
 - big-ip_policy_enforcement_manager
 - big-ip_analytics
 
CWE
                
                    
                        
                        CWE-400
                        
            Uncontrolled Resource Consumption
