Check Point Reference: | CPAI-2016-0083 |
Date Published: | 8 Feb 2016 |
Severity: | High |
Last Updated: | Monday 15 February, 2016 |
Source: | |
Industry Reference: | CVE-2014-4377 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | IOS 1-7 |
Vulnerability Description | A memory corruption vulnerability has been reported in Adobe Reader and Acrobat. The vulnerability is due to incorrect memory buffer allocation while parsing a corrupted PDF file. A remote attacker may exploit this vulnerability by enticing a target user to open a specially crafted PDF file |
Adobe Reader Memory Corruption(CVE-2014-4377)
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, click on Protection tab and select the version of your choice.
This protection's log will contain the following information:
Attack Name: Adobe Products Violation.
Attack Information: Apple IOS PDF Reader Parsing Memory Corruption