Description
Detects PDFs exploiting CVE-2024-20726, CVE-2024-20727, and CVE-2024-20728, out-of-bounds write vulnerabilities in Adobe Acrobat that can allow code execution. The rule matches the compressed stream structures that public exploits use to write beyond allocated buffers.