When the BIG-IP Configuration utility is configured to use Lightweight Directory Access Protocol (LDAP) authentication, undisclosed traffic can cause the httpd process to exhaust the available file descriptors. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
| Vendor | Product | Versions |
|---|---|---|
| f5 | big-ip | 21.0.0, 17.5.0, 17.1.0, 16.1.0 |
Updated severity to CRITICAL, marked as actively exploited, and noted that no exploit is available.
Initial creation