Netskope Threat Labs

FILE-IMAGE Adobe Acrobat Pro EMF out of bounds read attempt

IPS-SWG

1 SID: 47950

First seen
April 2023
Last seen
July 2026

Detects documents exploiting out-of-bounds read vulnerabilities in Adobe Acrobat's enhanced metafile parsing, including CVE-2018-12843 through CVE-2018-12845, which can leak memory. The rule matches the crafted metafile records that public exploits use to read beyond allocated buffers.