Medium severity5.5NVD Advisory· Published Jan 28, 2020· Updated Jun 17, 2026
CVE-2020-8315
CVE-2020-8315
Description
In Python (CPython) 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1, an insecure dependency load upon launch on Windows 7 may result in an attacker's copy of api-ms-win-core-path-l1-1-0.dll being loaded and used instead of the system's copy. Windows 8 and later are unaffected.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- osv-coords3 versions
>= 3.6.0, < 3.6.11+ 2 more
- (no CPE)range: >= 3.6.0, < 3.6.11
- (no CPE)range: >= 3.6.0, < 3.6.11
- (no CPE)range: >= 3.6.0, < 3.6.11
cpe:2.3:a:python:python:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:python:python:*:*:*:*:*:*:*:*range: >=3.6.0,<=3.6.10
- (no CPE)range: 3.6-3.6.10, 3.7-3.7.6, 3.8-3.8.1
- Python/Python (CPython)description
Patches
Vulnerability mechanics
References
1- bugs.python.org/issue39401nvdIssue TrackingPatchVendor Advisory
News mentions
0No linked articles in our index yet.