HTTP: Adobe Reader CVE-2018-12862 Remote Code Execution

This signature detects attempts to exploit a known vulnerability against Adobe Reader. A successful attack can lead to arbitrary code execution under application context.

Extended Description

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an out-of-bounds write vulnerability. Successful exploitation could lead to arbitrary code execution.

References

CVE: CVE-2018-12862

Short Name
HTTP:STC:ADOBE:CVE-2018-12862CE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Adobe CVE-2018-12862 Code Execution Reader Remote
Release Date
09/19/2018
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3377
False Positive
Unknown
CVSS Score

9.3

Found a potential security threat?