Denial-of-Service Vulnerability in F-Secure and WithSecure Products: Infinite Loop in aerdl.so/aerdl.dll during PE File Unpacking

Denial-of-Service Vulnerability in F-Secure and WithSecure Products: Infinite Loop in aerdl.so/aerdl.dll during PE File Unpacking

CVE-2022-28886 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine

Learn more about our Web Application Penetration Testing UK.