Netskope Threat Labs

BROWSER-IE Microsoft Edge PDF PostScript calculator out of bounds read attempt

IPS-SWG

1 SID: 40100

First seen
May 2022
Last seen
October 2026

Detects PDF documents that exploit CVE-2016-3374, an out-of-bounds read in Microsoft Edge's PostScript calculator function handling that can leak memory. The rule matches the type 4 function definitions that public exploits use to read beyond allocated buffers during PDF rendering.