---
id: CVE-2023-7346
title: >-
  Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation
  vulnerability that allows attackers to cause incorrect Bitcoin addresses to be
  displayed by exploiting improper handling of miniscript policies containing
  the a: f…
summary: >-
  Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation
  vulnerability that allows attackers to cause incorrect Bitcoin addresses to be
  displayed by exploiting improper handling of miniscript policies containing
  the a: f…
severity: medium
cvss: 4
cvssVector: 'CVSS:3.1/AV:P/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N'
cwe:
  - CWE-682
published: '2026-05-20'
updated: '2026-07-23'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2023-7346'
references:
  - url: 'https://donjon.ledger.com/lsb/019/'
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/ledger-bitcoin-app-address-derivation-error-via-miniscript
    label: disclosure@vulncheck.com
tags:
  - nvd
epss: 0.0014
epssPercentile: 0.03746
ingestedAt: '2026-07-23T12:17:55.101Z'
---

## Overview

Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation vulnerability that allows attackers to cause incorrect Bitcoin addresses to be displayed by exploiting improper handling of miniscript policies containing the a: fragment. Attackers can craft malicious miniscript policies that cause the device to derive and display incorrect receiving addresses, potentially leading to funds being sent to unintended addresses.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
