python-dbusmock before version 0.15.1 AddTemplate() D-Bus method call or DBusTestCase.spawn_server_template() method could be tricked into executing malicious code if an attacker supplies a .pyc file.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1326
Reference (s):
- https://github.com/martinpitt/python-dbusmock/commit/4e7d0df9093

