CVE-2004-0452

EPSS 0.05%

perl - privilege escalation

Published: 12/21/2004Modified: 4/28/2026
Also known as:DSA-1678-1DEBIAN-CVE-2004-0452

Description

Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for the world, which allows local users to delete arbitrary files and directories, and possibly read files and directories, via a symlink attack.

Affected packages (3)

References (1)