New Zero Day Adobe Acrobat Reader Vulnerability Analysis – Part 1
ID: 16162e81-59a5-51de-a794-c4357dc5fd99
STIX ID: report--16162e81-59a5-51de-a794-c4357dc5fd99
Feed Name: Zscaler Security Research Blog
Threat Score
This report analyzes an active Adobe Reader zero-day (CVE-2009-4324) delivered via a malicious, obfuscated PDF that contains JavaScript heap-spray exploit code targeting a vulnerable util.printd() call; the author documents using pdf-parser.py and Malzilla to extract and deobfuscate the payload and recommends disabling Acrobat JavaScript until a vendor patch is available.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
