A vulnerability has been discovered in the IBM Resource Access Control Facility (RACF). The problem occurs when updating mapping profiles and may result in a users privileges being modified when in fact the invoked command failed. This could ultimately result in privilege elevation if a privileged application were to carryout UserID to username translation to verify authorization.
A vulnerability has been discovered in the IBM Resource Access Control Facility (RACF). The problem occurs when updating mapping profiles and may result in a users privileges being modified when in fact the invoked command failed. This could ultimately result in privilege elevation if a privileged application were to carryout UserID to username translation to verify authorization.