Remote Code Execution Vulnerability in Debian Dpkg Command
CVE-2015-0840
Currently unrated
Summary
The dpkg-source command in Debian's dpkg version prior to 1.16.16 and 1.17.x before 1.17.25 is susceptible to a security flaw that enables remote attackers to bypass signature verification. This is achieved through the manipulation of a crafted Debian source control file (.dsc), which can lead to potential unauthorized access and execution of malicious code. System administrators are encouraged to review and apply the latest security updates to mitigate this risk.
References
Timeline
Vulnerability published
Vulnerability Reserved