IBM WebSphere Message Broker 6.1 before 6.1.0.11, 7.0 before 7.0.0.5, and 8.0 before 8.0.0.2 has incorrect ownership of certain uninstaller Java Runtime Environment (JRE) files, which might allow local users to gain privileges by leveraging access to uid 501 or gid 300.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2012-12-05T11:00:00

Updated: 2024-08-06T19:57:50.473Z

Reserved: 2012-06-07T00:00:00

Link: CVE-2012-3317

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2012-12-05T11:57:14.757

Modified: 2017-08-29T01:31:53.243

Link: CVE-2012-3317

cve-icon Redhat

No data.