First published: Wed May 25 2022(Updated: )
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Credit: cve-notifications-us@f-secure.com
Affected Software | Affected Version | How to fix |
---|---|---|
F-Secure Atlant | ||
F-secure Cloud Protection For Salesforce | ||
F-secure Elements Collaboration Protection | ||
F-secure Internet Gatekeeper | ||
F-Secure Linux Security | ||
F-secure Elements Endpoint Detection And Response | ||
F-secure Elements Endpoint Protection | ||
Apple macOS | ||
Microsoft Windows |
FIX No User action is required. The required fix has been published through automatic update channel with Capricorn database on 2022-05-16_12
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-28875.
The severity of CVE-2022-28875 is medium (CVSS score 6.5).
The following products are affected by CVE-2022-28875: F-Secure Atlant, F-Secure Cloud Protection For Salesforce, F-Secure Elements Collaboration Protection, F-Secure Internet Gatekeeper, F-Secure Linux Security, F-Secure Elements Endpoint Detection And Response, F-Secure Elements Endpoint Protection.
Yes, the vulnerability can be exploited remotely by an attacker.
The vendor has released patches and updates to address CVE-2022-28875. It is recommended to install the latest updates from the vendor.