Vulnerability Bulletins

IBM Security Bulletin: TLS padding vulnerability affects IBM Rational ClearCase (CVE-2014-8730)

   
Affected software IBM
 
Transport Layer Security (TLS) padding vulnerability via a POODLE (Padding Oracle On Downgraded Legacy Encryption) like attack affects IBM Rational ClearCase. CVE(s): CVE-2014-8730 Affected product(s) and affected version(s): CMI and OSLC integrations (Windows platform) The vulnerable component is used when ClearCase on Windows platforms is configured to integrate with IBM Rational ClearQuest or Rational Team Concert with communication over SSL (https). This applies to Base CC/CQ

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_tls_padding_vulnerability_affects_ibm_rational_clearcase_cve_2014_8730?lang=en_us