VYPR
Unrated severityNVD Advisory· Published Jun 21, 2010· Updated Apr 29, 2026

CVE-2010-1168

CVE-2010-1168

Description

The Safe (aka Safe.pm) module before 2.25 for Perl allows context-dependent attackers to bypass intended (1) Safe::reval and (2) Safe::rdo access restrictions, and inject and execute arbitrary code, via vectors involving implicitly called methods and implicitly blessed objects, as demonstrated by the (a) DESTROY and (b) AUTOLOAD methods, related to "automagic methods."

Affected products

15
  • cpe:2.3:a:rafael_garcia-suarez:safe:2.21:*:*:*:*:*:*:*+ 14 more
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.21:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.22:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.23:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.24:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.08:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.09:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.11:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.13:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.14:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.15:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.16:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.17:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.18:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.19:*:*:*:*:*:*:*
    • cpe:2.3:a:rafael_garcia-suarez:safe:2.20:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

18

News mentions

0

No linked articles in our index yet.