CVE-2022-28884
Denial-of-Service (DoS) Vulnerability
More information
A denial-of-service vulnerability was discovered in WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine. The exploit can be triggered remotely by an attacker.
This issue was reported to WithSecure through the Vulnerability Reward Program. No known exploit or attack has been seen in the wild.
Contributors
WithSecure would like to thank faty420 for bringing this issue to our attention.