7PK - Security Features
IBM InfoSphere Streams before 184.108.40.206 and IBM Streams before 220.127.116.11 do not properly implement the runAsUser feature, which allows local users to obtain root group privileges via unspecified vectors.
CWE-254 - Security Features
Security features are integrated into the application infrastructure to protect its resources and the trusted environment against a known exploit, threat, or vulnerability. However, flawed, disabled, or absent security features expose the application to a variety of attacks. This is a multidimensional vulnerability with broad potential impact. It can lead to defacement, confidentiality compromise, system takeover, etc.