CVE-2005-2992: Low severity arc arc vulnerability
Published Oct 13, 2005
·Updated
arc 5.21j and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different type of vulnerability than CVE-2005-2945.
Affected Software
1 affected component
arc arc<=5.21j
Remediation
Patch Available
Patch Available
Event History
Oct 13, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2992?
CVE-2005-2992 is considered a medium-severity vulnerability due to its potential for local users to exploit it.
2
How do I fix CVE-2005-2992?
To mitigate CVE-2005-2992, update the arc software to version 5.21k or later.
3
Who is affected by CVE-2005-2992?
Local users of arc versions 5.21j and earlier are affected by CVE-2005-2992.
4
What type of vulnerability is CVE-2005-2992?
CVE-2005-2992 is a symlink attack vulnerability that allows local users to overwrite arbitrary files.
5
When was CVE-2005-2992 discovered?
CVE-2005-2992 was reported in September 2005.