CVE-2014-6221: Critical severity ibm rational clearcase vulnerability
The MSCAPI/MSCNG interface implementation in GSKit in IBM Rational ClearCase 7.1.2.x before 7.1.2.17, 8.0.0.x before 8.0.0.14, and 8.0.1.x before 8.0.1.7 does not properly generate random numbers, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6221?
CVE-2014-6221 has a medium severity rating due to its potential impact on cryptographic protection mechanisms.
How do I fix CVE-2014-6221?
To fix CVE-2014-6221, users should upgrade to IBM Rational ClearCase version 7.1.2.17 or higher, 8.0.0.14 or higher, or 8.0.1.7 or higher.
What are the affected versions for CVE-2014-6221?
The affected versions for CVE-2014-6221 include IBM Rational ClearCase 7.1.2.x before 7.1.2.17, 8.0.0.x before 8.0.0.14, and 8.0.1.x before 8.0.1.7.
What type of vulnerability is CVE-2014-6221?
CVE-2014-6221 is a cryptographic vulnerability related to improper random number generation.
Who is affected by CVE-2014-6221?
Organizations using vulnerable versions of IBM Rational ClearCase are at risk if they have not applied the necessary patches.