← Vulnerability feed

Vulnerability record · CVE-2015-1793 · published 9 July 2015

CVE-2015-1793: OpenSSL X.509 Basic Constraints flaw allows CA role spoofing

Oracle · Supply Chain Products Suite

OpenSSL 1.0.1n, 1.0.1o, 1.0.2b and 1.0.2c mishandle X.509 Basic Constraints cA values while identifying alternative certificate chains in X509_verify_cert. A valid leaf certificate can therefore be used to spoof a Certification Authority role and trigger unintended certificate verifications. This undermines the trust decisions applications make when validating TLS and other X.509-based connections.

6.5 CVSS 3.0 Medium EPSS 62% · top 0.8% CWE-254 · CWE-254
6.5CVSS 3.0 base score, v2 6.4
62%EPSS exploitation probability, 30 days
NoNot in CISA KEV
4Affected product versions listed by NVD
62References
17 Jun 2026Last modified by NVD

Description

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and trigger unintended certificate verifications via a valid leaf certificate.

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 19 September 2026. Confidence: high.

high priorityThe flaw allows certificate trust bypass remotely without authentication, and although CVSS rates it medium, the very high EPSS percentile and broad downstream product exposure raise urgency.

What it is

OpenSSL 1.0.1n, 1.0.1o, 1.0.2b and 1.0.2c mishandle X.509 Basic Constraints cA values while identifying alternative certificate chains in X509_verify_cert. A valid leaf certificate can therefore be used to spoof a Certification Authority role and trigger unintended certificate verifications. This undermines the trust decisions applications make when validating TLS and other X.509-based connections.

Impact

An attacker can get a certificate accepted as if it were issued by a trusted CA, enabling impersonation of servers or other certificate-based identities. The CVSS 3.0 vector shows limited confidentiality and integrity impact, not full system compromise.

Attack surface

Reachable remotely over the network with no authentication and no user interaction (AV:N/AC:L/PR:N/UI:N). The attacker only needs to present a crafted but valid leaf certificate to a vulnerable OpenSSL-based verifier.

Exploitation

Not listed in CISA KEV and no ransomware usage is documented, but EPSS is high (0.62394, 99.1st percentile), indicating elevated likelihood of exploitation activity. References are vendor advisories and patches rather than public exploit tags.

What to do

  • Upgrade OpenSSL to a version after 1.0.1o/1.0.2c that contains the fix, or apply the vendor patch referenced in the OpenSSL security advisory.
  • Patch or upgrade downstream products that bundle affected OpenSSL versions, including Oracle, Juniper, Cisco, HPE, Huawei and NetBSD components listed in the references.
  • Inventory and scan for embedded OpenSSL 1.0.1n, 1.0.1o, 1.0.2b and 1.0.2c in appliances and third-party software that may not be covered by normal OS patching.
  • Where immediate patching is not possible, restrict or monitor certificate validation paths that rely on alternative chain building.

Detection

  • Monitor TLS and certificate validation logs for unexpected chain-building failures or successes involving leaf certificates presented as CAs.
  • Track OpenSSL version strings across hosts and services to find systems still running 1.0.1n, 1.0.1o, 1.0.2b or 1.0.2c.
  • Alert on certificates with Basic Constraints cA values that do not match their role in the presented chain.
  • Review vendor advisories and patch status for the listed Oracle, Juniper, Cisco, HPE, Huawei and NetBSD products.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery
http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10694
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/161747.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/161782.html
http://marc.info/?l=bugtraq&m=143880121627664&w=2
http://marc.info/?l=bugtraq&m=144370846326989&w=2
http://openssl.org/news/secadv_20150709.txt Vendor Advisory
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150710-openssl
http://www.fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery
http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html Patch
http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html
http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html
http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html Patch
http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html Patch
http://www.securityfocus.com/bid/75652
http://www.securityfocus.com/bid/91787
http://www.securitytracker.com/id/1032817
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2015&m=slackware-security.561427
http://www1.huawei.com/en/security/psirt/security-bulletins/security-advisories/hw-454058.htm
https://git.openssl.org/?p=openssl.git%3Ba=commit%3Bh=9a0db453ba017ebcaccbee933ee6511a9ae4d1c8
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04822825
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05184351
https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes
https://kc.mcafee.com/corporate/index?page=content&id=SB10125
https://security.gentoo.org/glsa/201507-15
https://www.exploit-db.com/exploits/38640/
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:12.openssl.asc
http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery
http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10694
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/161747.html
http://lists.fedoraproject.org/pipermail/package-announce/2015-July/161782.html
http://marc.info/?l=bugtraq&m=143880121627664&w=2
http://marc.info/?l=bugtraq&m=144370846326989&w=2
http://openssl.org/news/secadv_20150709.txt Vendor Advisory
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150710-openssl

Track CVE-2015-1793 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2021-42013Apache HTTP Server path traversal and RCE via incomplete fixThe fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient, leaving a path traversal flaw that lets attackers map URLs to files outside…KEVEPSS 100%analysed7.5CVE-2014-0160OpenSSL TLS/DTLS Heartbeat Extension Out-of-Bounds Read (Heartbleed)OpenSSL 1.0.1 before 1.0.1g mishandles Heartbeat Extension packets in its TLS and DTLS implementations, causing an out-of-bounds read of process memo…KEVEPSS 100%analysed6.1CVE-2020-11023jQuery DOM manipulation methods XSS via untrusted HTML option elementsjQuery versions 1.0.3 through before 3.5.0 execute untrusted code when HTML containing <option> elements from untrusted sources is passed to DOM mani…KEVEPSS 85%analysed10.0CVE-2009-3245Openssl improper input validation vulnerabilityOpenSSL before 0.9.8m does not check for a NULL return value from bn_wexpand function calls in (1) crypto/bn/bn_div.c, (2) crypto/bn/bn_gf2m.c, (3) c…EPSS 6.5%10.0CVE-2006-3738OpenSSL SSL_get_shared_ciphers buffer overflow via long cipher listOpenSSL versions before 0.9.7l and 0.9.8d contain a buffer overflow in the SSL_get_shared_ciphers function, triggered by a long list of ciphers. The …EPSS 49%analysed9.9CVE-2026-60627Oracle jd edwards enterpriseone tools missing authentication for critical function vulnerabilityVulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Installation Security). The supported version that is af…EPSS 0.43%9.8CVE-2026-63073Openssl vulnerabilityIssue summary: OpenSSL CMP response validation passed an unexpected response sender distinguished name directly as the format string to `ERR_raise_da…EPSS 1.2%9.8CVE-2026-61272Oracle jd edwards enterpriseone tools improper access control vulnerabilityVulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Web Runtime SEC). Supported versions that are affected a…EPSS 0.51%

Source: NIST National Vulnerability Database (record CVE-2015-1793), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.