CVE-2015-5652

Publication date

2015-10-05 10:00:00

Family

jpcert

State

PUBLISHED

Description

Untrusted search path vulnerability in python.exe in Python through 3.5.0 on Windows allows local users to gain privileges via a Trojan horse readline.pyd file in the current working directory. NOTE: the vendor says "It was determined that this is a longtime behavior of Python that cannot really be altered at this point."