Home
HIGH: 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
2.0.1 (semver)
affected
Description
IBM Transformation Advisor 2.0.1 through 4.3.1 incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Transformation Advisor Operator Catalog image.
Problem types
CWE-732 Incorrect Permission Assignment for Critical Resource
Product status
2.0.1 (semver)
Credits
Antony Di Scala
Mike Whale
References
www.ibm.com/support/pages/node/7243632