IBM Spectrum LSF 9.1.1 9.1.2, 9.1.3, and 10.1 could allow a local user to change their job user at job submission time due to improper file permission settings. IBM X-Force ID: 147439.
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/147439 | vdb entry vendor advisory |
https://www-01.ibm.com/support/docview.wss?uid=ibm10734767 | patch vendor advisory mitigation |
http://www.securityfocus.com/bid/106642 | third party advisory vdb entry |