IBM SDK, Java Technology Edition Version 8 on the AIX platform uses absolute RPATHs which may facilitate code injection and privilege elevation by local users. IBM X-Force ID: 152081.
Recent assessments:
timb-machine at March 05, 2021 12:26am UTC reported:
Unlikely to be setUID, unlikely that you will have write control over the vulnerable part of the RPATH at the point another user runs it. More theoretical than actual.
Assessed Attacker Value: 1
Assessed Attacker Value: 1Assessed Attacker Value: 5