CVE Vulnerabilities

CVE-2016-2867

Published: Jul 02, 2016 | Modified: Jul 06, 2016
CVSS 3.x
7
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

IBM InfoSphere Streams before 4.0.1.2 and IBM Streams before 4.1.1.1 do not properly implement the runAsUser feature, which allows local users to obtain root group privileges via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Infosphere_streams Ibm * 4.0.1.1 (including)
Streams Ibm * 4.1.1.0 (including)

References