Last Modified: Nov 22, 2021
Affected Product:
See more info
BIG-IP TMOS
Known Affected Versions:
12.1.4, 12.1.3, 12.1.2
Opened: Jun 04, 2018
Severity: 3-Major
High memory usage by objects of type cmp. Using SP-DAG and a small Large Scale NAT (LSN) pool, some TMMs may not have any local translation addresses. If connections are routed out a VLAN that has cmp-hash src-ip, a small amount of memory may be leaked.
A small amount of memory may be leaked. The aggressive sweeper might kill connections. TMM may crash. Traffic disrupted while tmm restarts.
-- Using SP-DAG. -- Using small LSN pools. -- Having TMMs that do not not have any local translation addresses. -- Connections are routed out a VLAN that has cmp-hash src-ip.
Using the default DAG with small LSN Pools gives all TMMs local translation endpoints. To prevent the leak, allow only VLANs with cmp-hash dst-ip in the LSN pool egress interface list.
None