CVE-2022-28880: Denial-of-Service (DoS) Vulnerability
A Denial-of-Service vulnerability was discovered in the F-Secure Atlant and in certain WithSecure products while scanning fuzzed PE32-bit files it is possible that can crash the scanning engine. The exploit can be triggered remotely by an attacker.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-28880?
CVE-2022-28880 is a Denial-of-Service vulnerability discovered in F-Secure Atlant and certain WithSecure products.
Which software is affected by CVE-2022-28880?
The affected software includes F-Secure Atlant, F-Secure Elements Endpoint Detection And Response, F-Secure Elements Endpoint Protection, F-secure Cloud Protection For Salesforce, F-secure Elements Collaboration Protection, F-secure Internet Gatekeeper, F-Secure Linux Security, and F-secure Linux Security 64.
How severe is CVE-2022-28880?
CVE-2022-28880 has a severity rating of 7.5 (high).
How can CVE-2022-28880 be exploited?
CVE-2022-28880 can be triggered remotely by an attacker while scanning fuzzed PE32-bit files.
Where can I find more information about CVE-2022-28880?
You can find more information about CVE-2022-28880 in the F-Secure vulnerability reward program hall of fame and the WithSecure expertise page.