CVE-2015-1326

python-dbusmock before version 0.15.1 AddTemplate() D-Bus method call or DBusTestCase.spawn_server_template() method could be tricked into executing malicious code if an attacker supplies a .pyc file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:python-dbusmock_project:python-dbusmock:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:25

Type Values Removed Values Added
References () https://github.com/martinpitt/python-dbusmock/commit/4e7d0df9093 - Patch, Third Party Advisory () https://github.com/martinpitt/python-dbusmock/commit/4e7d0df9093 - Patch, Third Party Advisory
CVSS v2 : 9.3
v3 : 8.8
v2 : 9.3
v3 : 5.7

Information

Published : 2019-04-22 16:29

Updated : 2024-11-21 02:25


NVD link : CVE-2015-1326

Mitre link : CVE-2015-1326

CVE.ORG link : CVE-2015-1326


JSON object : View

Products Affected

python-dbusmock_project

  • python-dbusmock
CWE
CWE-20

Improper Input Validation