IBM InfoSphere Streams before 4.0.1.2 and IBM Streams before 4.1.1.1 do not properly implement the runAsUser feature, which allows local users to obtain root group privileges via unspecified vectors.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21983444 | Patch Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg21983444 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:48
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21983444 - Patch, Vendor Advisory |
Information
Published : 2016-07-02 14:59
Updated : 2024-11-21 02:48
NVD link : CVE-2016-2867
Mitre link : CVE-2016-2867
CVE.ORG link : CVE-2016-2867
JSON object : View
Products Affected
ibm
- infosphere_streams
- streams
CWE
CWE-254
7PK - Security Features