By overlong input values an attacker may force overwrite of the internal program stack in SAP Web Dispatcher - versions 7.53, 7.77, 7.81, 7.85, 7.86, or Internet Communication Manager - versions KRNL64NUC 7.22, 7.22EXT, 7.49, KRNL64UC 7.22, 7.22EXT, 7.49, 7.53, KERNEL 7.22, 7.49, 7.53, 7.77, 7.81, 7.85, 7.86, which makes these programs unavailable, leading to denial of service.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2022-04-12T16:11:32
Updated: 2024-08-03T06:03:52.584Z
Reserved: 2022-04-06T00:00:00
Link: CVE-2022-28772
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-04-12T17:15:10.833
Modified: 2022-04-20T14:24:08.470
Link: CVE-2022-28772
Redhat
No data.