Esta página ainda não foi traduzida para o seu idioma. Exibindo conteúdo em inglês enquanto trabalhamos nisso.
💡 Keep dependencies up to date — most exploits target known, patchable vulnerabilities.
CVE-2026-41956: DoS in F5 BIG-IP via UDP Classification
Plataforma
linux
Componente
bigip
Corrigido em
17.5.1.4
CVE-2026-41956 describes a denial-of-service (DoS) vulnerability in F5 BIG-IP. When a classification profile is configured on a UDP virtual server, specially crafted requests can trigger a crash in the Traffic Management Microkernel (TMM), leading to service disruption. This vulnerability impacts versions 16.1.0 through 17.5.1.4, and a fix is available in version 17.5.1.4.
Impacto e Cenários de Ataquetraduzindo…
Successful exploitation of CVE-2026-41956 allows an attacker to induce a denial-of-service condition on the affected F5 BIG-IP system. This results in the Traffic Management Microkernel (TMM) terminating, effectively halting traffic processing and rendering the virtual server unavailable. The impact can range from temporary service outages to prolonged disruptions, potentially affecting critical applications and services dependent on the BIG-IP infrastructure. The blast radius is limited to the specific UDP virtual server and its associated services, but widespread impact is possible if the affected BIG-IP device handles high-volume traffic or is a critical component of the network infrastructure. While no public exploits are currently available, the DoS nature of the vulnerability makes it a potential target for opportunistic attacks.
Contexto de Exploraçãotraduzindo…
CVE-2026-41956 was published on May 13, 2026. The vulnerability is not currently listed on CISA KEV or EPSS, suggesting a low to medium probability of exploitation. No public proof-of-concept (POC) code is currently available. Given the DoS nature of the vulnerability and the potential for easy exploitation via crafted requests, it is recommended to prioritize remediation.
Inteligência de Ameaças
Status do Exploit
CISA SSVC
Vetor CVSS
O que significam essas métricas?
- Attack Vector
- Rede — explorável remotamente pela internet. Sem acesso físico ou local necessário.
- Attack Complexity
- Baixa — sem condições especiais. O atacante pode explorar de forma confiável.
- Privileges Required
- Nenhum — sem autenticação necessária para explorar.
- User Interaction
- Nenhuma — ataque automático e silencioso. A vítima não faz nada.
- Scope
- Inalterado — impacto limitado ao componente vulnerável.
- Confidentiality
- Nenhum — sem impacto na confidencialidade.
- Integrity
- Nenhum — sem impacto na integridade.
- Availability
- Alto — falha completa ou esgotamento de recursos. Negação de serviço total.
Software Afetado
Classificação de Fraqueza (CWE)
Linha do tempo
- Reservado
- Publicada
Mitigação e Soluções Alternativastraduzindo…
The primary mitigation for CVE-2026-41956 is to upgrade F5 BIG-IP to version 17.5.1.4 or later, which contains the fix. If immediate upgrade is not feasible, consider implementing temporary workarounds. Review and restrict access to UDP virtual servers with classification profiles, limiting exposure to untrusted sources. Implement rate limiting on UDP traffic to mitigate the impact of potential DoS attacks. Monitor BIG-IP system logs for unusual traffic patterns or error messages related to TMM crashes. After upgrading, confirm the fix by sending a test request to the affected UDP virtual server and verifying that TMM remains stable.
Como corrigirtraduzindo…
Actualice su sistema BIG-IP a una versión que incluya la corrección para evitar la terminación inesperada de TMM. Consulte la nota de seguridad de F5 (https://my.f5.com/manage/s/article/K000158038) para obtener más detalles y las versiones específicas afectadas y corregidas.
Perguntas frequentestraduzindo…
What is CVE-2026-41956 — DoS in F5 BIG-IP?
CVE-2026-41956 is a denial-of-service vulnerability affecting F5 BIG-IP versions 16.1.0 through 17.5.1.4. Malicious requests can crash the Traffic Management Microkernel (TMM), causing service disruption.
Am I affected by CVE-2026-41956 in F5 BIG-IP?
You are affected if you are running F5 BIG-IP versions 16.1.0 through 17.5.1.4 and have UDP virtual servers configured with classification profiles.
How do I fix CVE-2026-41956 in F5 BIG-IP?
Upgrade to F5 BIG-IP version 17.5.1.4 or later to resolve the vulnerability. Consider temporary workarounds like rate limiting if immediate upgrade is not possible.
Is CVE-2026-41956 being actively exploited?
There are currently no reports of active exploitation, but the DoS nature of the vulnerability makes it a potential target.
Where can I find the official F5 advisory for CVE-2026-41956?
Refer to the official F5 security advisory for CVE-2026-41956 on the F5 website (https://www.f5.com/security/center/alerts).
Seu projeto está afetado?
Envie seu arquivo de dependências e descubra na hora se esta e outras CVEs te atingem.
Experimente agora — sem conta
Faça upload de qualquer manifesto (composer.lock, package-lock.json, lista de plugins WordPress…) ou cole sua lista de componentes. Receba um relatório de vulnerabilidades instantaneamente. Fazer upload de um arquivo é só o começo: com uma conta, você obtém monitoramento contínuo, alertas por Slack/email, relatórios multiprojeto e white-label.
Arraste e solte seu arquivo de dependências
composer.lock, package-lock.json, requirements.txt, Gemfile.lock, pubspec.lock, Dockerfile...