HTTP: Adobe Reader Sandbox Security Bypass

This signature detects attempts to exploit a known flaw in Adobe Flash Player. An attack can entice a user to load a malicious Flash file which can result in arbitrary code execution in the victim's browser.

Extended Description

Adobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via unspecified vectors.

References

BugTraq: 69193

CVE: CVE-2014-0546

Short Name
HTTP:STC:ADOBE:READER-SECBYPASS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Adobe Bypass CVE-2014-0546 Reader Sandbox Security bid:69193
Release Date
09/01/2014
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3718
False Positive
Unknown
CVSS Score

10.0

Found a potential security threat?