Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-28882

Опубликовано: 23 авг. 2022
Источник: nvd
CVSS3: 4.3
CVSS3: 7.5
EPSS Низкий

Описание

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:f-secure:elements_endpoint_protection:*:*:*:*:*:*:*:*

Одно из

cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:f-secure:atlant:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:cloud_protection_for_salesforce:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:elements_collaboration_protection:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:internet_gatekeeper:*:*:*:*:*:*:*:*
cpe:2.3:a:f-secure:linux_security:*:*:*:*:*:*:x86:*
cpe:2.3:a:f-secure:linux_security_64:*:*:*:*:*:*:*:*

EPSS

Процентиль: 55%
0.00327
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventually leads to scanning engine crash. The exploit can be triggered remotely by an attacker.

EPSS

Процентиль: 55%
0.00327
Низкий

4.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-835