Skip to main content

Improper Input Validation


Severity High
Score 7.5/10


On F5 BIG-IP 13.1.0-, 13.0.0, 12.1.0-, 11.6.1-, 11.5.1-11.5.5, or 11.2.1, a malformed TLS handshake causes TMM to crash leading to a disruption of service. This issue is only exposed on the data plane when Proxy SSL configuration is enabled. The control plane is not impacted by this issue.

  • LOW
  • NONE
  • NONE
  • NONE
  • NONE
  • HIGH

CWE-20 - Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.


Advisory Timeline

  • Published