Security Advisory

CVE-2015-5652

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-10-05 10:00:00
Last updated 2024-08-06 06:59:03
Assigner jpcert
CVSS score not scored
State PUBLISHED

Description

Untrusted search path vulnerability in python.exe in Python through 3.5.0 on Windows allows local users to gain privileges via a Trojan horse readline.pyd file in the current working directory. NOTE: the vendor says "It was determined that this is a longtime behavior of Python that cannot really be altered at this point."