Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-2807

An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause an integer underflow resulting in code execution. An attacker can construct a malicious journal file to trigger this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 6.8
Products affected by CVE-2017-2807


Contact Us

Shodan ® - All rights reserved