
Cloud Vulnerability DB
A community-led vulnerabilities database
The vulnerability CVE-2021-23034 affects BIG-IP systems version 16.x before 16.1.0 and 15.1.x before 15.1.3.1. The vulnerability occurs when a DNS profile using a DNS cache resolver is configured on a virtual server, where undisclosed requests can cause the Traffic Management Microkernel (TMM) process to terminate (MITRE CVE).
The vulnerability has been assigned a CVSS score of 7.5, indicating a high-severity security issue. The vulnerability specifically affects the DNS cache resolver functionality when configured on a virtual server, potentially leading to service disruption through the termination of the Traffic Management Microkernel process (Hacker News).
When successfully exploited, this vulnerability can cause the Traffic Management Microkernel (TMM) process to terminate, potentially leading to service disruption and affecting the availability of the BIG-IP system (MITRE CVE).
F5 has released patches to address this vulnerability. Users are strongly advised to update their BIG-IP systems to version 16.1.0 or 15.1.3.1 or later, depending on their current version. Given the critical nature of BIG-IP devices in network infrastructure, administrators are recommended to install the updated software as soon as possible (Hacker News).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."