Bug ID 553146: BD memory leak

Last Modified: Nov 07, 2022

Affected Product(s):
BIG-IP ASM(all modules)

Known Affected Versions:
11.6.0, 11.6.0 HF1, 11.6.0 HF2, 11.6.0 HF3, 11.6.0 HF4, 11.6.0 HF5, 11.6.0 HF6, 11.6.0 HF7, 11.6.0 HF8, 12.0.0

Fixed In:
12.1.0, 12.0.0 HF1, 11.6.1

Opened: Oct 18, 2015

Severity: 3-Major

Related Article: K95632194

Symptoms

BD memory increases. May reach a kernel 'OOM killer' scenario.

Impact

High memory consumption on the system, swap memory usage, potential crashes.

Conditions

Usually a policy with missing content profiles (XML, etc.) on a post request that causes the POST to be parsed incorrectly and issue many parameter violations.

Workaround

Apply the correct content profiles. Note: Valid requests typically do not have that many parameters in them. If you have requests that do, apply the 'apply value signature' on those big POSTs.

Fix Information

This release fixes a memory leak in the Enforcer.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips