#VU49083 Resource exhaustion in BIG-IP APM - CVE-2020-27722
Published: December 17, 2020
BIG-IP APM
F5 Networks
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources. Under certain conditions, the VDI plugin does not observe plugin flow-control protocol causing excessive resource consumption. A remote user can send socially crafted VDI traffic to the system and perform a denial of service (DoS) attack.