PT-2022-14880 · Estsoft · Estsoft Alyac

Jaewon Min

·

Published

2022-05-12

·

Updated

2022-05-23

·

CVE-2022-21147

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ESTsoft Alyac version 2.5.7.7
Description An out of bounds read issue exists in the malware scan functionality. A specially-crafted PE file can trigger this issue, causing denial of service and termination of the malware scan. An attacker can provide a malicious file to trigger this issue.
Recommendations For ESTsoft Alyac version 2.5.7.7, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-21147

Affected Products

Estsoft Alyac