CVE Vulnerabilities

CVE-2025-59781

Incomplete Cleanup

Published: Oct 15, 2025 | Modified: Oct 22, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

When DNS cache is configured on a BIG-IP or BIG-IP Next CNF virtual server, undisclosed DNS queries can cause an increase in memory resource utilization.   Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Weakness

The product does not properly “clean up” and remove temporary or supporting resources after they have been used.

Affected Software

NameVendorStart VersionEnd Version
Big-ip_access_policy_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_advanced_firewall_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_advanced_web_application_firewallF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_analyticsF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_application_acceleration_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_application_security_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_application_visibility_and_reportingF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_automation_toolchainF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_carrier-grade_natF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_container_ingress_servicesF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_ddos_hybrid_defenderF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_domain_name_systemF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_edge_gatewayF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_fraud_protection_serviceF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_global_traffic_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_link_controllerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_local_traffic_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_policy_enforcement_managerF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_ssl_orchestratorF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_webacceleratorF515.1.0 (including)15.1.10.8 (excluding)
Big-ip_websafeF515.1.0 (including)15.1.10.8 (excluding)

Potential Mitigations

References