CVE Vulnerabilities

CVE-2022-28884

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Sep 06, 2022 | Modified: Sep 09, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Business_suite Withsecure - (including) - (including)
Elements_endpoint_protection Withsecure * *

References