CVE-2014-3038

Publication date

2014-06-08 23:00:00

Family

ibm

State

PUBLISHED

Description

IBM SPSS Modeler 16.0 before 16.0.0.1 on UNIX does not properly drop group privileges, which allows local users to bypass intended file-access restrictions by leveraging (1) gid 0 or (2) roots group memberships.