2008å¹´ä¸æã«ã¯ãPerl ã® File::Path ã¢ã¸ã¥ã¼ã«ã® rmtree é¢æ°ã«é¢ãã CVE ã 3件çºè¡¨ãããã (CVE-2008-2827, CVE-2008-5302, CVE-2008-5303)ã¾ããsymlink attack ã«é¢ãã CVE 㯠100件以ä¸åºã¦ããã ãã³ãã©ãªãã¡ã¤ã«ã®æ±ãã«é¢ããåé¡ã¯å¤ããããããããã¾ã ã«å¤ãã®åé¡ãçºçãããããã§æ¬ç¨¿ã§ã¯ãã³ãã©ãªãã¡ã¤ã«ã®æ±ãããã«ã¤ãã¦è§£èª¬ãããã¾ããå®å ¨ãªåé¤ã«å©ç¨ã§ããæ°ããã·ã¹ãã ã³ã¼ã«ãææ¡ããã¦ããã®ã§ãããã«ã¤ãã¦ã触ããã ãã³ãã©ãªãã¡ã¤ã«ã¯ããã°ã©ã ãä¸æçã«å©ç¨ãããã¡ã¤ã«ã§ããã Unix ã«ããã¦ã¯ /tmp ã /var/tmp ã¨ãããã£ã¬ã¯ããªãæä¾ããã¦ããããã¹ã¦ã®ã¦ã¼ã¶ããã®ãã£ã¬ã¯ããªä¸ã«ãã³ãã©ãªãã¡ã¤ã«ãçæã»åé¤ããã®ãæ £ç¿ã§ãããæ¬ç¨¿ã§ã¯ããããã®ã
{{#tags}}- {{label}}
{{/tags}}