Stats
- First seen
- May 2022
- Last seen
- October 2026
Description
Detects PDF documents that exploit CVE-2016-3374, an out-of-bounds read in Microsoft Edge's PostScript calculator function handling that can leak memory. The rule matches the type 4 function definitions that public exploits use to read beyond allocated buffers during PDF rendering.