Arc Insecure Temporary File Creation Vulnerability
BID:14863
Info
Arc Insecure Temporary File Creation Vulnerability
| Bugtraq ID: | 14863 |
| Class: | Access Validation Error |
| CVE: |
CVE-2005-2945 CVE-2005-2992 |
| Remote: | No |
| Local: | Yes |
| Published: | Sep 16 2005 12:00AM |
| Updated: | Jul 12 2009 05:06PM |
| Credit: | [email protected] and D1g1t4lLeech are credited with the discovery of this vulnerability. |
| Vulnerable: |
ARC ARC 5.21 l ARC ARC 5.21 j |
| Not Vulnerable: | |
Discussion
Arc Insecure Temporary File Creation Vulnerability
ARC creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to view files and obtain privileged information. The attacker may also perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Exploitation would most likely result in loss of confidentiality and theft of privileged information. Successful exploitation of a symlink attack may result in sensitive configuration files being overwritten. This may result in a denial of service; other attacks may also be possible.
ARC 5.21j and earlier versions are reported to be vulnerable.
ARC creates temporary files in an insecure manner.
An attacker with local access could potentially exploit this issue to view files and obtain privileged information. The attacker may also perform symlink attacks, overwriting arbitrary files in the context of the affected application.
Exploitation would most likely result in loss of confidentiality and theft of privileged information. Successful exploitation of a symlink attack may result in sensitive configuration files being overwritten. This may result in a denial of service; other attacks may also be possible.
ARC 5.21j and earlier versions are reported to be vulnerable.
Exploit / POC
Arc Insecure Temporary File Creation Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
Arc Insecure Temporary File Creation Vulnerability
Solution:
Debian has released security advisory DSA 843-1 addressing this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
ARC ARC 5.21 l
Solution:
Debian has released security advisory DSA 843-1 addressing this issue. Please see the referenced advisory for further information.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
ARC ARC 5.21 l
-
Debian arc_5.21l-1sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_a lpha.deb -
Debian arc_5.21l-1sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_a md64.deb -
Debian arc_5.21l-1sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_a rm.deb -
Debian arc_5.21l-1sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_h ppa.deb -
Debian arc_5.21l-1sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_i 386.deb -
Debian arc_5.21l-1sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_i a64.deb -
Debian arc_5.21l-1sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_m 68k.deb -
Debian arc_5.21l-1sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_m ips.deb -
Debian arc_5.21l-1sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_m ipsel.deb -
Debian arc_5.21l-1sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_p owerpc.deb -
Debian arc_5.21l-1sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_s 390.deb -
Debian arc_5.21l-1sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/a/arc/arc_5.21l-1sarge1_s parc.deb
References
Arc Insecure Temporary File Creation Vulnerability
References:
References:
- ARC Web Site (ARC)
- arc insecure temporary file creation (ZATAZ Audits
)