CVE-2004-0452

Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for the world, which allows local users to delete arbitrary files and directories, and possibly read files and directories, via a symlink attack.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:larry_wall:perl:5.6.1:*:*:*:*:*:*:*
cpe:2.3:a:larry_wall:perl:5.8.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-12-21 05:00

Updated : 2024-02-28 10:24


NVD link : CVE-2004-0452

Mitre link : CVE-2004-0452

CVE.ORG link : CVE-2004-0452


JSON object : View

Products Affected

larry_wall

  • perl