CVE-2026-34019CWE-410

BIG-IP BFD vulnerability

Medium · published May 13, 2026

CVSS v4.0
6.3
EPSS
0%
Percentile
21.6
In the wild
Unconfirmed
What it is

When Bidirectional Forwarding Detection (BFD) is configured in Static and Dynamic routing protocols, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to stop processing BFD packets and cause the configured routing protocol to fail over.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

The record
Technical detail
CVSS v4.0
6.3 · MEDIUM
Vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
EPSS
0.00293 · 21.6th percentile
Weakness
CWE-410 · Insufficient Resource Pool
Published
2026-05-13T14:12Z
EPSS history
Timeline
  • 13 MAY 14:12Z
    BIG-IP BFD vulnerability
    cvelistv5