TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2022-28884

MEDIUM
4.3

Beschreibung

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine.

CVE Details

CVSS v3.1 Bewertung4.3
SchweregradMEDIUM
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:L
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienHIGH
BenutzerinteraktionREQUIRED
Veroffentlicht9/6/2022
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

f-secure:internet_gatekeeperf-secure:linux_securitywithsecure:business_suitewithsecure:elements_endpoint_protection

Schwachen (CWE)

CWE-835

Referenzen

https://www.withsecure.com/en/expertise/people(cve-notifications-us@f-secure.com)
https://www.withsecure.com/en/expertise/people(af854a3a-2127-422b-91ae-364da2661108)
https://www.withsecure.com/en/support/security-advisories(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.