When HTTP/2 client and server profile is configured on a virtual server, undisclosed requests can cause TMM to terminate.
Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://my.f5.com/manage/s/article/K000140968 |
|
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 08 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 May 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When HTTP/2 client and server profile is configured on a virtual server, undisclosed requests can cause TMM to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated | |
| Title | BIG-IP HTTP/2 vulnerability | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: f5
Published: 2025-05-07T22:04:09.501Z
Updated: 2025-05-08T13:06:27.107Z
Reserved: 2025-04-23T22:28:26.354Z
Link: CVE-2025-41414
Updated: 2025-05-08T13:06:24.331Z
Status : Awaiting Analysis
Published: 2025-05-07T22:15:20.420
Modified: 2025-05-08T14:39:09.683
Link: CVE-2025-41414
No data.