CVE Vulnerabilities

CVE-2022-28886

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Sep 23, 2022 | Modified: Sep 26, 2022
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Cloud_protection_for_salesforce F-secure * *
Collaboration_protection F-secure * *
Elements_endpoint_protection F-secure * *
Internet_gatekeeper F-secure - (including) - (including)
Linux_security F-secure * *

References