CVE-2016-2867: IBM InfoSphere Streams

High severity, CVSS 7.0. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM InfoSphere Streams before 4.0.1.2 and IBM Streams before 4.1.1.1 do not properly implement the runAsUser feature, which allows local users to obtain root group privileges via unspecified vectors.

Affected products

  • IBM InfoSphere Streams: up to and including 4.0.1.1
  • IBM Streams: up to and including 4.1.1.0

Published 2016-07-02. Last modified 2026-06-17.