F5 BIG-IP is an application delivery platform from F5 that integrates network traffic orchestration, load balancing, intelligent DNS, remote access policy management, etc. An out-of-bounds read vulnerability exists in F5 BIG-IP LTM and APM NTLM, when LTM health check probes or APM single sign-on are configured on a virtual server and NTLM challenge-response is used. undisclosed traffic could result in buffer over-reads, which could be exploited by an attacker to leak arbitrary system memory to the server.