CVE-2019-11109: F5 BIG-IP 10000s Firmware

Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Logic issue in the subsystem for Intel(R) SPS before versions SPS_E5_04.01.04.275.0, SPS_SoC-X_04.00.04.100.0 and SPS_SoC-A_04.00.04.191.0 may allow a privileged user to potentially enable denial of service via local access.

Affected products

  • F5 BIG-IP 10000s Firmware: affected versions not specified
  • F5 BIG-IP 10050s Firmware: affected versions not specified
  • F5 BIG-IP 10150v-N Firmware: affected versions not specified
  • F5 BIG-IP 10200v-S Firmware: affected versions not specified
  • F5 BIG-IP 10250v Firmware: affected versions not specified
  • F5 BIG-IP 10350v-N Firmware: affected versions not specified
  • F5 BIG-IP 12250v Firmware: affected versions not specified
  • F5 BIG-IP Access Policy Manager: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP Advanced Firewall Manager: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP Analytics: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP Application Acceleration Manager: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP Application Security Manager: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP b2250 Firmware: affected versions not specified
  • F5 BIG-IP b4300 Firmware: affected versions not specified
  • F5 BIG-IP b4340n Firmware: affected versions not specified
  • F5 BIG-IP b4450n Firmware: affected versions not specified
  • F5 BIG-IP Domain Name System: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP Fraud Protection Service: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2
  • F5 BIG-IP Global Traffic Manager: from 11.5.2, up to and including 11.6.5; from 12.1.0, up to and including 12.1.5; from 13.1.0, up to and including 13.1.3; from 14.1.0, up to and including 14.1.2; from 15.0.0, up to and including 15.0.1
  • F5 BIG-IP i10600 Firmware: affected versions not specified
  • F5 BIG-IP i10800 Firmware: affected versions not specified
  • F5 BIG-IP i11600 Firmware: affected versions not specified
  • F5 BIG-IP i11800 Firmware: affected versions not specified
  • F5 BIG-IP i15600 Firmware: affected versions not specified
  • F5 BIG-IP i15800 Firmware: affected versions not specified
  • and 9 more

Published 2019-12-18. Last modified 2026-06-17.