Netskope Threat Labs

FILE-PDF Adobe Reader Universal 3D engine out of bounds memory access violation attempt

IPS-SWG

1 SID: 39104

First seen
October 2022
Last seen
September 2026

Detects a PDF exploiting CVE-2016-1071 and CVE-2016-1074, memory access flaws in Adobe Reader's embedded 3D content engine that can allow code execution. The rule matches the crafted 3D record sizes that public exploits use to read and write beyond allocated buffers.