Back to Database
Status published
Medium
CVE-2022-2402
Stack Overflow in ESET Endpoint Encryption and ESET Full Disk Encryption for Windows
Vulnerability Description
The vulnerability in the driver dlpfde.sys enables a user logged into the system to perform system calls leading to kernel stack overflow, resulting in a system crash, for instance, a BSOD.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-2402
Credits & Attribution
No credits recorded in the NVD database.
More from ESET, spol. s r.o.
View All →CVE-2024-7400
Local privilege escalation in ESET products for Windows
High
8.5
CVE-2024-6654
Denial of Service vulnerability in ESET products for macOS
Medium
6.8
CVE-2024-2003
Local Privilege Escalation in Quarantine of ESET products for Windows
High
7.3
CVE-2024-11859
DLL Search Order Hijacking in ESET products for Windows
High
8.4
CVE-2024-0353
Local privilege escalation in Windows products
High
7.8
Affected Vendor
ESET, spol. s r.o.
View all reports →Affected Software
ESET Endpoint Encryption, ESET Full Disk Encryption
Vulnerable Versions:
5.1.1.14, 1.3.1.25
Timeline
Official Publish:
September 6th, 2022
Last Modified:
September 16th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H