CVE-2022-28886
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/09/2022
Last modified:
22/05/2025
Description
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine
Impact
Base Score 3.x
4.30
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:f-secure:cloud_protection_for_salesforce:*:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:collaboration_protection:*:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:windows:x86:* | ||
cpe:2.3:a:f-secure:internet_gatekeeper:-:*:*:*:*:*:*:* | ||
cpe:2.3:a:f-secure:linux_security:*:*:*:*:*:*:x86:* |
To consult the complete list of CPE names with products and versions, see this page