Loading...
Loading...
A zip bomb can be sent to a BIG-IP system. When it is unzipped, its content can consume too much space.
It can cause buffer overflow, or out of memory.
This happens when the inflation ratio is very high.
None.
This release adds a db variable, compression.zlibinflateratio.threshold, that allows you to set the threshold of the zlib inflate ratio during decompression process. A recommended setting is 10, but the value really depends on the free memory. For a device with lots of free memory, you can set it to a higher value.
Click on a version to see all relevant bugs
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.