A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the fsicapd component used in certain F-Secure products while scanning larger packages/fuzzed files consume too much memory eventually can crash the scanning engine. The exploit can be triggered remotely by an attacker.
References
Link | Resource |
---|---|
https://www.f-secure.com/en/home/support/security-advisories/cve-2022-28871 | Vendor Advisory |
https://www.withsecure.com/en/support/security-advisories/cve-2022-28871 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: F-SecureUS
Published: 2022-04-25T10:14:52
Updated: 2022-05-09T10:14:00
Reserved: 2022-04-08T00:00:00
Link: CVE-2022-28871
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-25T11:15:07.407
Modified: 2023-08-08T14:22:24.967
Link: CVE-2022-28871
JSON object: View
Redhat Information
No data.
CWE