« Blog Home

FLASH: Vulnerability in IBM Rational ClearCase ClearQuest with potential for TLS Attack

The IBM GSKit component used in Rational ClearCase and ClearQuest is susceptible to a Transport Layer Security protocol (used in HTTPS) vulnerability known as “Lucky Thirteen.” The vulnerability might allow remote attackers to conduct distinguishing and plain-text recovery attacks by statistically analyzing timing data for crafted packets.

Remediation:
Upgrade to latest version: 7.1.2.12, 8.0.0.8 or 8.0.1.1

Learn more:

    * Full Name

    * Work Email

    * Are you using any AI tools today? What tools?

      * Full Name

      * Work Email

      Are you using any SCA solution? Which one?

        * Full Name

        * Work Email

        * Are you using OpenProject?

        Do you have any questions you'd like to ask before the webinar?

          * Full Name

          * Work Email

          * Are you using any Secrets Management solution? Which one?