CVE-2017-2806
low
CVSS v3
3.3
CVSS v2
4.3
VIR risk
3.3
Description
An exploitable arbitrary read exists in the XLS parsing of the Lexmark Perspective Document Filters conversion functionality. A crafted XLS document can lead to a arbitrary read resulting in memory disclosure. The vulnerability was confirmed on versions 11.3.0.2228 and 11.3.0.2400
Predictions
Exploit likelihood
34%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| lexmark | perceptive_document_filters | 11.3.0.2228 | |
| lexmark | perceptive_document_filters | 11.3.0.2400 | |
References
CWEs
CWE-125
Verify integrity in audit chain (admin only). AS-IS.