irule-cve-2022-22965

This is a basic iRule to provide some mitigation against CVE-2022-22965 a.k.a. Spring4Shell. Tested on BIG-IP 15.x.

Overview

On March 30, 2022, a remote code execution (RCE) vulnerability was found in the Java Spring Framework, identified by the CVE 2022-22965.

I am sharing an example iRule to assist with mitigation of this CVE. This may require further customization but it's a good start 🙂

This iRule is not officialy supported by F5.