>> HP-UX Perl "File::Path::rmtree" Local Privilege Escalation Issue
Title : HP-UX Perl "File::Path::rmtree" Local Privilege Escalation Issue VUPEN ID : VUPEN/ADV-2005-0803 CVE ID : CVE-2005-0448 CWE ID : CWE-
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2005-06-16
Technical Description
A vulnerability was identified in HP-UX, which could be exploited by local attackers to obtain elevated privileges. This flaw is due to a race condition in "File::Path.pm" when deleting a directory tree, which could be exploited by local users to create setuid binaries in the directory tree.