Denial-of-Service (DoS) Vulnerability
Description
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking PE files. It is possible that this can crash the scanning engine.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
A denial-of-service vulnerability in F-Secure and WithSecure products allows aerdl.dll to enter an infinite loop when unpacking PE files, potentially crashing the scanning engine.
Vulnerability
A denial-of-service (DoS) vulnerability exists in F-Secure and WithSecure products where the aerdl.dll component may enter an infinite loop when unpacking Portable Executable (PE) files [1]. This issue can cause the scanning engine to become unresponsive or crash. The affected products include various F-Secure and WithSecure antivirus and security solutions; specific version numbers are not disclosed in the available references [1].
Exploitation
An attacker can exploit this vulnerability by providing a specially crafted PE file that triggers the infinite loop in aerdl.dll during unpacking [1]. No authentication is required, and the attacker does not need any special network position beyond the ability to deliver the malicious file to the target system (e.g., via email, web download, or file share). The scanning engine processes the file automatically, requiring no user interaction beyond normal file scanning activities [1].
Impact
Successful exploitation leads to a denial-of-service condition, where the scanning engine crashes or becomes hung [1]. This can prevent the affected product from scanning further files, potentially leaving the system unprotected until the engine is restarted. The impact is limited to availability; there is no indication of data compromise or privilege escalation [1].
Mitigation
F-Secure and WithSecure have not yet released a specific security advisory detailing the fix for CVE-2022-28884 in the provided references [1][2]. Users should monitor the official F-Secure and WithSecure security advisories page [1] for updates. Until a patch is available, ensure that real-time scanning is enabled and that antivirus definitions are up to date, as these may help reduce the risk. No workaround is explicitly mentioned in the available sources [1][2].
AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
2- F-Secure and WithSecure/All F-Secure and WithSecure Endpoint Protection products for Windows and Mac running 32 bit operating system. F-Secure Linux Security 32 F-Secure Atlant F-Secure Internet Gatekeeper WithSecure Cloud Protection for Salesforce WithSecure Collaboration Protectionv5Range: All Version
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.withsecure.com/en/expertise/peoplemitrex_refsource_MISC
- www.withsecure.com/en/support/security-advisoriesmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.