CVE-2018-5508: F5 BIG-IP Policy Enforcement Manager
Medium severity, CVSS 5.9. EPSS: 0.8% chance of exploitation in the next 30 days.
On F5 BIG-IP PEM versions 13.0.0, 12.0.0-12.1.3.1, 11.6.0-11.6.2, 11.5.1-11.5.5, or 11.2.1, under certain conditions, TMM may crash when processing compressed data though a Virtual Server with an associated PEM profile using the content insertion option.
Affected products
- F5 BIG-IP Policy Enforcement Manager: from 11.5.1, up to and including 11.5.5; from 11.6.0, up to and including 11.6.2; from 12.0.0, up to and including 12.1.3; version 11.2.1 only; version 13.0.0 only
Published 2018-04-13. Last modified 2026-06-17.