Stats
- First seen
- October 2022
- Last seen
- September 2026
Description
Detects a PDF exploiting CVE-2016-1071 and CVE-2016-1074, memory access flaws in Adobe Reader's embedded 3D content engine that can allow code execution. The rule matches the crafted 3D record sizes that public exploits use to read and write beyond allocated buffers.