AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2015-0840

MEDIUM · CVSS 4.3 EPSS 1.83%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-04-13 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2015-0840
Severity
MEDIUM
CVSS
4.3
EPSS
1.83%
Debian

Original Filing — NVD Description

The dpkg-source command in Debian dpkg before 1.16.16 and 1.17.x before 1.17.25 allows remote attackers to bypass signature verification via a crafted Debian source control file (.dsc).