HTTP: Adobe Acrobat EMF File Heap Buffer Overflow

This signature detects attempts to exploit a known Heap Buffer Overflow vulnerability in the Adobe Acrobat EMF File. A successful attack can lead to arbitrary code execution under the security context of the user.

Extended Description

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.

Short Name
HTTP:STC:IMG:ADOBE-EMF-DOWNLOAD
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Acrobat Adobe Buffer CVE-2018-4978 EMF File Heap Overflow
Release Date
08/02/2018
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

srx-branch-12.3

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx-12.3

vmx-19.3

srx-12.3

Sigpack Version
3377
False Positive
Unknown
CVSS Score

10.0

Found a potential security threat?