Security Advisory

CVE-2020-15801

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-17 02:15:04
Last updated 2024-08-04 13:30:21
Assigner mitre
State PUBLISHED

Description

In Python 3.8.4, sys.path restrictions specified in a python38._pth file are ignored, allowing code to be loaded from arbitrary locations. The <executable-name>._pth file (e.g., the python._pth file) is not affected.