CVE-2022-28876: Denial-of-Service (DoS) Vulnerability
Published Jul 14, 2022
·Updated
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Affected Software
8 affected components
F-Secure Atlant
F-Secure Cloud Protection For Salesforce
F-Secure Elements Collaboration Protection
F-Secure Internet Gatekeeper
F-Secure Linux Security
F-Secure Elements Endpoint Protection
Apple macOS
Microsoft Windows
Remediation
Information
FIX No User action is required. The required fix has been published through automatic update channel with Capricorn database on 2022-07-04_09
Event History
Jul 14, 2022
CVE Published
via MITRE·02:45 PM
Data Sourced
via MITRE·02:45 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-28876?
CVE-2022-28876 is a Denial-of-Service (DoS) vulnerability found in F-Secure Atlant and certain WithSecure products.
2
How does CVE-2022-28876 affect the software?
CVE-2022-28876 can cause a crash in the scanning engine of F-Secure Atlant and certain WithSecure products when the aeheur.dll component is scanned.
3
Can CVE-2022-28876 be exploited remotely?
Yes, CVE-2022-28876 can be triggered remotely by an attacker.
4
What is the severity of CVE-2022-28876?
CVE-2022-28876 has a severity rating of 7.5 (high).
5
How can I fix CVE-2022-28876?
To fix CVE-2022-28876, it is recommended to apply the necessary security patches or updates provided by F-Secure or WithSecure.