HTTP: Adobe PDF Use After Closed Handle Remote Code Execution

This signature detects attempts to exploit a known vulnerability in the Adobe Acrobat XI. A successful attack can lead to remote code execution within the context of the specified user.

Extended Description

Unspecified vulnerability in Adobe Reader 11.0.02 allows attackers to bypass the sandbox protection mechanism via unknown vectors, as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.

Affected Products

Adobe acrobat_reader

References

CVE: CVE-2013-2550

Short Name
HTTP:STC:ADOBE:PDF-UAC-HANDLE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Adobe After CVE-2013-2550 Closed Code Execution Handle PDF Remote Use
Release Date
05/15/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Adobe

CVSS Score

7.5

Found a potential security threat?