libuv before 0.10.34 does not properly drop group privileges, which allows context-dependent attackers to gain privileges via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| fedoraproject / fedora | 21 | 21.x |
| libuv_project / libuv | - | 0.10.33.x |
| nodejs / node.js | - | 0.10.37 |