Vulnerability Description
python-dbusmock before version 0.15.1 AddTemplate() D-Bus method call or DBusTestCase.spawn_server_template() method could be tricked into executing malicious code if an attacker supplies a .pyc file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Python-Dbusmock Project | Python-Dbusmock | < 0.15.1 |
Related Weaknesses (CWE)
References
- https://github.com/martinpitt/python-dbusmock/commit/4e7d0df9093PatchThird Party Advisory
- https://github.com/martinpitt/python-dbusmock/commit/4e7d0df9093PatchThird Party Advisory
FAQ
What is CVE-2015-1326?
CVE-2015-1326 is a vulnerability with a CVSS score of 5.7 (MEDIUM). python-dbusmock before version 0.15.1 AddTemplate() D-Bus method call or DBusTestCase.spawn_server_template() method could be tricked into executing malicious code if an attacker supplies a .pyc file.
How severe is CVE-2015-1326?
CVE-2015-1326 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-1326?
Check the references section above for vendor advisories and patch information. Affected products include: Python-Dbusmock Project Python-Dbusmock.