Netskope Threat Labs

FILE-PDF Adobe Acrobat CoolType.dll out of bounds read attempt

IPS-SWG

1 SID: 62405

Detects a PDF exploiting CVE-2023-26369, the out-of-bounds read in Adobe's CoolType font engine that saw active exploitation. The flaw can lead to code execution when the reader renders crafted font streams, and the rule matches the malformed font stream that triggers it.