First published: Thu Oct 13 2005(Updated: )
arc 5.21j and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different type of vulnerability than CVE-2005-2945.
Credit: security@debian.org
Affected Software | Affected Version | How to fix |
---|---|---|
Arc Arc | <=5.21j |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-2992 is considered a medium-severity vulnerability due to its potential for local users to exploit it.
To mitigate CVE-2005-2992, update the arc software to version 5.21k or later.
Local users of arc versions 5.21j and earlier are affected by CVE-2005-2992.
CVE-2005-2992 is a symlink attack vulnerability that allows local users to overwrite arbitrary files.
CVE-2005-2992 was reported in September 2005.