CVE-2025-22891 – F5 BIG-IP Diameter Endpoint Profile Denial of Service (DoS) and Memory Consumption Vulnerability

CVE ID : CVE-2025-22891

Published : Feb. 5, 2025, 6:15 p.m. | 1 hour, 15 minutes ago

Description : When BIG-IP PEM Control Plane listener Virtual Server is configured with Diameter Endpoint profile, undisclosed traffic can cause the Virtual Server to stop processing new client connections and an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Severity: 7.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…CVE ID : CVE-2025-22891

Published : Feb. 5, 2025, 6:15 p.m. | 1 hour, 15 minutes ago

Description : When BIG-IP PEM Control Plane listener Virtual Server is configured with Diameter Endpoint profile, undisclosed traffic can cause the Virtual Server to stop processing new client connections and an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Severity: 7.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…