CVEs Blog | G5 Cyber Security

CVE-2020-15801 – In Python 3.8.4, sys.path restrictions specified in a python38._pth file

In Python 3.8.4, sys.path restrictions specified in a python38._pth file are ignored, allowing code to be loaded from arbitrary locations. The ._pth file (e.g., the python._pth file) is not affected.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15801

Reference (s):

Exit mobile version