{"uuid":"CPANSA-File-Path-2017-01","url":"https://metacpan.org/changes/distribution/File-Path","title":"Race condition in the rmtree and remove_tree functions allows attackers to set the mode on arbitrary files via vectors involving directory-permission loosening logic.","description":"Race condition in the rmtree and remove_tree functions allows attackers to set the mode on arbitrary files via vectors involving directory-permission loosening logic.","origin":"CPANSA","severity":null,"published_at":"2017-05-02T00:00:00.000Z","withdrawn_at":null,"classification":null,"cvss_score":null,"cvss_vector":null,"references":["https://metacpan.org/changes/distribution/File-Path","https://github.com/jkeenan/File-Path/commit/e5ef95276ee8ad471c66ee574a5d42552b3a6af2"],"source_kind":"cpansa","identifiers":["CPANSA-File-Path-2017-01","CVE-2017-6512"],"repository_url":"https://github.com/jkeenan/File-Path","blast_radius":1.0,"created_at":"2026-05-22T09:42:25.899Z","updated_at":"2026-08-27T19:36:22.532Z","epss_percentage":null,"epss_percentile":null,"api_url":"https://advisories.ecosyste.ms/api/v1/advisories/CPANSA-File-Path-2017-01","html_url":"https://advisories.ecosyste.ms/advisories/CPANSA-File-Path-2017-01","packages":[{"ecosystem":"cpan","package_name":"File-Path","versions":[{"first_patched_version":"2.13","vulnerable_version_range":"\u003c 2.13"}],"purl":null,"statistics":{"dependent_packages_count":1109,"dependent_repos_count":0,"downloads":null,"downloads_period":null},"affected_versions":[],"unaffected_versions":[]}],"related_packages_url":"https://advisories.ecosyste.ms/api/v1/advisories/CPANSA-File-Path-2017-01/related_packages","related_advisories":[]}