This page aggregates publicly disclosed CVE and security risk information related to arc, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2005-2992 | arc 5.21j and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different type of vulnerability than CVE-2005-2945. | [email protected] | 2.1 | 0.07% | 2005-10-13 | 2026-04-16 |
| CVE-2005-2945 | arc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c). | [email protected] | 2.1 | 0.06% | 2005-09-16 | 2026-04-16 |