CVE-2017-6512 PUBLISHED

Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for Perl allows attackers to set the mode on arbitrary files via vectors involving directory-permission loosening logic.

EPSS 0.89% · 75.5th percentile

Risk Scores

EPSS Score
0.89%
75.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSperl5.22.1-9ubuntu0.2, 0, 5.20.2-6
Ubuntu:14.04:LTSperl0, 5.14.2-21build1, 5.18.1-4

Timeline

References

Open in Interactive Console →