CVE-2014-3104: IBM Rational Clearcase

Medium severity, CVSS 5.0. EPSS: 1.7% chance of exploitation in the next 30 days.

IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.

Affected products

  • IBM Rational Clearcase: version 7.1 only; version 7.1.0.1 only; version 7.1.0.2 only; version 7.1.1 only; version 7.1.1.1 only; version 7.1.1.2 only; …

Published 2014-09-23. Last modified 2026-06-17.