Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in RC4 stream cipher affects IBM Rational ClearCase (CVE-2015-2808)

   
Affected software IBM
 
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects IBM Rational ClearCase. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): IBM Rational ClearCase, versions 7.1.0.x, 7.1.1.x, 7.1.2.x, 8.0.0.x, 8.0.1.x, in the following components: CCRC WAN server/CM Server component, when configured to use SSL (all platforms) Base CC/CQ V2 (Perl trigger-based) integration, when configured to use SSL to communicate with a ClearQuest Web server (all platforms) CMI and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_ibm_rational_clearcase_cve_2015_2808?lang=en_us