CVE-2005-0448 and CVE-2004-0452, which were addressed by DSA-696-1 and DSA-620-1. Unfortunately, they were reintroduced later."> OVAL Reference oval:org.mitre.oval:def:18549 - CERT Civis.Net
Oval Definition:oval:org.mitre.oval:def:18549
Revision Date:2014-06-23Version:8
Title:DSA-1678-1 perl - privilege escalation
Description:Paul Szabo rediscovered a vulnerability in the File::Path::rmtree function of Perl. It was possible to exploit a race condition to create setuid binaries in a directory tree or remove arbitrary files when a process is deleting this tree. This issue was originally known as CVE-2005-0448 and CVE-2004-0452, which were addressed by DSA-696-1 and DSA-620-1. Unfortunately, they were reintroduced later.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2004-0452
CVE-2005-0448
CVE-2008-5302
CVE-2008-5303
DSA-1678-1
Platform(s):Debian GNU/Linux 4.0
Product(s):perl
Definition Synopsis
  • Debian GNU/Linux 4.0 is installed.
  • AND perl DPKG is earlier than 5.8.8-7etch5
  • BACK