Vulnerabilities > F Secure > Cloud Protection FOR Salesforce > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-09-23 CVE-2022-28886 Infinite Loop vulnerability in F-Secure products
A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when unpacking PE files.
local
low complexity
f-secure CWE-835
5.5
2022-05-25 CVE-2022-28875 Improper Resource Shutdown or Release vulnerability in F-Secure products
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the scanning the aemobile component can crash the scanning engine.
network
low complexity
f-secure CWE-404
6.5
2021-10-08 CVE-2021-33603 Unspecified vulnerability in F-Secure products
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVPACK module component used in certain F-Secure products can crash while scanning a fuzzed files.
network
low complexity
f-secure
6.5
2021-10-08 CVE-2021-40832 Unspecified vulnerability in F-Secure products
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVRDL unpacking module component used in certain F-Secure products can crash while scanning a fuzzed files.
network
low complexity
f-secure
6.5
2021-09-07 CVE-2021-33599 Infinite Loop vulnerability in F-Secure products
A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-of-service (infinite loop and freezes AV engine scanner).
local
low complexity
f-secure CWE-835
5.5
2021-06-21 CVE-2021-33572 NULL Pointer Dereference vulnerability in F-Secure products
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the FSAVD component used in certain F-Secure products can crash while scanning larger packages/fuzzed files.
network
low complexity
f-secure CWE-476
6.5
2020-02-22 CVE-2020-9342 Interpretation Conflict vulnerability in F-Secure products
The F-Secure AV parsing engine before 2020-02-05 allows virus-detection bypass via crafted Compression Method data in a GZIP archive.
local
low complexity
f-secure CWE-436
5.5