CVE-2005-2945

NameCVE-2005-2945
Descriptionarc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c).
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-843-1
NVD severitylow (attack range: local)
Debian Bugs329053

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
arc (PTS)wheezy5.21p-1fixed
jessie5.21q-1fixed
buster, sid, stretch5.21q-4fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
arcsource(unstable)5.21m-1low329053
arcsourcesarge5.21l-1sarge1lowDSA-843-1

Search for package or bug name: Reporting problems