Bug ID 449845: TCP virtual with aborted flow (e.g. failing iRule) may crash TMM

Last Modified: Feb 13, 2019

Bug Tracker

Affected Product:  See more info
BIG-IP AFM, GTM, LTM(all modules)

Known Affected Versions:
11.3.0, 11.4.0, 11.4.1, 11.5.0, 11.5.1, 11.5.1 HF1, 11.5.1 HF10, 11.5.1 HF11, 11.5.1 HF2, 11.5.1 HF3, 11.5.1 HF4

Fixed In:
11.6.0, 11.5.1 HF5, 11.5.0 HF1, 11.4.1 HF4, 11.3.0 HF9

Opened: Feb 21, 2014
Severity: 2-Critical
Related AskF5 Article:
K15334

Symptoms

An aborted TCP flow with DNS profile and dns queuing enabled, may attempt to process a query when the hud chain has been dismantled. A call to process upper may lead to a TMM crash.

Impact

Traffic disrupted while tmm restarts.

Conditions

TCP virtual, aborting flow (i.e. iRule error), DNS queuing enabled.

Workaround

Disable DNS queuing (db var DNS.queuing)

Fix Information

DNS filter now formally enters framework.

Behavior Change