Rule Category

FILE-PDF -- Snort has detected suspicious traffic related to a PDF file. PDFs are easily exploitable. They include many ways to encapsulate data and are often targeted by attackers, who use the PDF's household name status for social engineering. Therefore, Snort includes Many PDF-targeted rules.

Alert Message

FILE-PDF Adobe Acrobat Pro U3D IFF out of bounds read attempt

Rule Explanation

This event is generated when a PDF that exploits the vulnerability outlined in CVE-2018-5048 is detected. Impact: Out of bounds read Details: This rule looks for a PDF that causes an out of bounds read in Adobe Acrobat Pro. Ease of Attack:

What To Look For

No information provided

Known Usage

No public information

False Positives

No known false positives

Contributors

Cisco Talos Intelligence Group

Rule Groups

No rule groups

CVE

Additional Links

Rule Vulnerability

CVE Additional Information

This product uses data from the NVD API but is not endorsed or certified by the NVD.
CVE-2018-15930
Loading description
CVE-2018-15932
Loading description
CVE-2018-15934
Loading description
CVE-2018-15935
Loading description
CVE-2018-15936
Loading description
CVE-2018-15938
Loading description
CVE-2018-15952
Loading description
CVE-2018-5048
Loading description
CVE-2019-7034
Loading description