Stats
- First seen
- January 2024
- Last seen
- March 2025
Description
Detects a document exploiting CVE-2018-12851 and CVE-2018-4982, heap overflows in Adobe Acrobat's metafile image handling that can allow code execution. The rule matches the crafted image records that public exploits use to overflow parser buffers.