VYPR
Unrated severityNVD Advisory· Published Dec 21, 2004· Updated Apr 16, 2026

CVE-2004-0452

CVE-2004-0452

Description

Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for the world, which allows local users to delete arbitrary files and directories, and possibly read files and directories, via a symlink attack.

Affected products

2
  • Larry Wall/Perl2 versions
    cpe:2.3:a:larry_wall:perl:5.6.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:larry_wall:perl:5.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:larry_wall:perl:5.8.4:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

14

News mentions

0

No linked articles in our index yet.