VYPR
Unrated severityNVD Advisory· Published Jul 14, 2022· Updated Aug 3, 2024

Denial-of-Service (DoS) Vulnerability

CVE-2022-28876

Description

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aeheur.dll component can crash the scanning engine. The exploit can be triggered remotely by an attacker.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A remote attacker can crash the scanning engine of F-Secure Atlant and certain WithSecure products by exploiting a DoS vulnerability in the aeheur.dll component.

Vulnerability

A Denial-of-Service (DoS) vulnerability exists in the aeheur.dll component of F-Secure Atlant and certain WithSecure products. When the scanning engine processes a crafted file, the component can crash, leading to a denial of service. The affected versions are not explicitly listed in the available references, but the vulnerability affects F-Secure Atlant and related WithSecure products.

Exploitation

An attacker can trigger this vulnerability remotely by sending a specially crafted file to be scanned by the affected product. No authentication or user interaction is required beyond the file being processed by the scanning engine.

Impact

Successful exploitation causes the scanning engine to crash, resulting in a denial of service. This prevents the product from scanning files until the engine is restarted, potentially leaving the system unprotected during that time.

Mitigation

No specific fix version is disclosed in the available references. Users are advised to monitor F-Secure and WithSecure security advisories for updates. As of the publication date (2022-07-14), no patch has been announced in the provided references.

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • F-Secure/All F-Secure & WithSecure endpoint protection products for Windows and Mac. F-Secure Linux Security (32-bit). F-Secure Linux Security (64-bit). F-Secure Atlant. WithSecure Cloud Protection for Salesforce & WithSecure Collaboration Protectionv5
    Range: All Version

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.