nilfs-utils before 2.0.14 installs multiple programs with unnecessary setuid privileges, which allows local users to execute arbitrary commands via the device string in a -c command line option to mkfs.nilfs2.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.