CVE-2022-28882: Denial-of-Service (DoS) Vulnerability
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-28882?
CVE-2022-28882 is a Denial-of-Service (DoS) vulnerability in F-Secure & WithSecure products that can cause the scanning engine to crash.
How does CVE-2022-28882 affect F-Secure Elements Endpoint Protection?
CVE-2022-28882 affects F-Secure Elements Endpoint Protection by putting the scanning engine at risk of a crash.
Can CVE-2022-28882 be exploited remotely?
Yes, CVE-2022-28882 can be exploited remotely by an attacker.
What is the severity of CVE-2022-28882?
CVE-2022-28882 has a severity rating of 7.5, indicating a high level of risk.
Is there a fix available for CVE-2022-28882?
It is recommended to update the affected F-Secure & WithSecure products to the latest version to mitigate CVE-2022-28882.