IBM WebSphere MQ 6.0 before 6.0.2.8 and 7.0 before 7.0.1.0 does not properly handle long group names, which might allow local users to gain privileges by leveraging combinations of group names with the same initial substring.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2011-10-30T19:00:00

Updated: 2024-08-07T04:57:16.311Z

Reserved: 2009-03-14T00:00:00

Link: CVE-2009-0905

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-10-30T19:55:00.820

Modified: 2017-08-17T01:30:05.413

Link: CVE-2009-0905

cve-icon Redhat

No data.