CVE-2005-2945: Low severity arc arc vulnerability
Published Sep 16, 2005
·Updated
arc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c).
Affected Software
1 affected component
arc arc<=5.21j
Event History
Sep 16, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2945?
CVE-2005-2945 is considered a medium severity vulnerability due to its ability to expose sensitive information to local users.
2
How do I fix CVE-2005-2945?
To fix CVE-2005-2945, update to a version of arc greater than 5.21j that has addressed this security issue.
3
What types of files are affected by CVE-2005-2945?
CVE-2005-2945 affects temporary files created by the arc and marc programs.
4
Who is impacted by CVE-2005-2945?
Local users of the system where vulnerable versions of arc are installed are impacted by CVE-2005-2945.
5
Is CVE-2005-2945 still relevant today?
While CVE-2005-2945 is an older vulnerability, it is still relevant for systems that use outdated versions of arc or similar applications.