Home
HIGH: 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
9.0.0
affected
9.0.1
affected
9.1.0
affected
9.2.0
affected
Description
IBM Licensing Operator incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Licensing Operator image.
Problem types
CWE-732 Incorrect Permission Assignment for Critical Resource
Product status
9.0.0
9.0.1
9.1.0
9.2.0
References
www.ibm.com/...se-service-privilege-escalation-vulnerability