CVE-2005-2945

NameCVE-2005-2945
Descriptionarc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c).
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-843-1
Debian Bugs329053

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
arc (PTS)buster5.21q-6fixed
bullseye5.21q-8fixed
bookworm5.21q-12fixed
sid, trixie5.21q-13fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
arcsourcesarge5.21l-1sarge1DSA-843-1
arcsource(unstable)5.21m-1low329053

Search for package or bug name: Reporting problems