The msr_open function in arch/x86/kernel/msr.c in the Linux kernel before 3.7.6 allows local users to bypass intended capability restrictions by executing a crafted application as root, as demonstrated by msr32.c.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.