cbcvebase.
CVE-2025-58120
published 2025-10-15

CVE-2025-58120: When HTTP/2 Ingress is configured, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have…

high8.7CVSS 4.0
AVNACLATNPRNUINVCNVINVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
When HTTP/2 Ingress is configured, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Affected

16 ranges
VendorProductVersion rangeFixed in
f5big-ip_next_cloud-native_network_functions
f5big-ip_next_cloud-native_network_functions1.1.0 – 1.4.1
f5big-ip_next_cnf
f5big-ip_next_cnf>= 1.1.0 < **
f5big-ip_next_cnf>= 2.0.0 < 2.0.12.0.1
f5big-ip_next_for_kubernetes
f5big-ip_next_for_kubernetes
f5big-ip_next_for_kubernetes>= 2.0.0 < 2.1.02.1.0
f5big-ip_next_service_proxy_for_kubernetes
f5big-ip_next_service_proxy_for_kubernetes
f5big-ip_next_service_proxy_for_kubernetes
f5big-ip_next_service_proxy_for_kubernetes>= 1.7.0 < 1.7.141.7.14
f5big-ip_next_spk>= 1.7.0 < **
f5big-ip_next_spk>= 1.8.0 < **
f5big-ip_next_spk>= 1.9.0 < **
f5big-ip_next_spk>= 2.0.0 < 2.0.12.0.1