
Cloud Vulnerability DB
A community-led vulnerabilities database
On BIG-IP DNS and GTM version 13.1.x before 13.1.0.4, and all versions of 12.1.x and 11.6.x, a buffer overflow vulnerability exists due to improper handling and parsing of certain payloads by the big3d component. The vulnerability was discovered and disclosed in February 2021, affecting F5 Networks' BIG-IP DNS and GTM products (CVE Details).
The vulnerability has been assigned CVE-2021-22982 with a CVSS score of 6.5, indicating a medium severity level. The issue specifically affects the big3d component of BIG-IP DNS and GTM systems, where improper handling and parsing of certain payloads can result in a buffer overflow condition (CISA Bulletin).
The buffer overflow vulnerability in the big3d component could potentially lead to system instability or denial of service conditions. The affected systems include BIG-IP DNS and GTM version 13.1.x before 13.1.0.4, and all versions of 12.1.x and 11.6.x (CVE Details).
Users are advised to upgrade to version 13.1.0.4 or later to address this vulnerability. Software versions which have reached End of Software Development (EoSD) are not evaluated and should be upgraded to supported versions (CISA Bulletin).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."