arrow-left

All pages
gitbookPowered by GitBook
1 of 5

Loading...

Loading...

Loading...

Loading...

Loading...

Customer Notifications

Investigation of OpenSSH vulnerability with Clarity LIMS

Published: July 30, 2024

Vulnerability CVE-2024-6387 was found to allow an unauthenticated remote code execution in OpenSSH’s server (sshd) that grants full root access. It affects the default configuration and does not require user interaction, posing a significant exploit risk.

The vulnerability affects OpenSSH version:

  • < 4.4p1 (unless the version is patched for CVE-2006-5051 and CVE-2008-4109)

  • >= 8.5p1

  • < 8.7p1

  • < 9.8p1

The affected OpenSSH versions reported in Vulnerability CVE-2024-6387 are not used for released ClarityLIMS version 6.2.0, 6.2.1 and 6.3.0:

ClarityLIMS version
Server OS
OpenSSH version

hashtag
References

https://ubuntu.com/security/CVE-2024-6387arrow-up-right

6.2, 6.2.1

Oracle Linux 8.9

8.0p1

6.3

Oracle Linux 8.10

8.0p1

https://www.qualys.com/regresshion-cve-2024-6387/arrow-up-right
https://linux.oracle.com/errata/ELSA-2024-12468.htmlarrow-up-right
https://nvd.nist.gov/vuln/detail/CVE-2024-6387arrow-up-right

Announcements

Clarity LIMS software is a powerful laboratory information management system (LIMS) designed to optimize genomics sample and workflow management. It enables labs to track samples, streamline complex tasks, generate sample sheets, and identify poor-quality samples before they reach the sequencing system.

  • Saves time and minimizes errors in sample handling through an automated workflow.

  • Out-of-the box integration with Illumina instruments. Accelerate adoption of Illumina NGS and array protocols with preconfigured workflows that require no coding experience.

  • Designed with compliance features including data entry validation, workflow enforcement, audit trails, electronic signatures and role-based permissions.

  • Easily collect and share data in real-time with external clients via LabLink. Collaborate on sample submission, status, and results delivery in a single, secure environment.

  • Scales with laboratory needs, accommodating third-party instruments and software through a robust RESTful Application Programming Interface (API).

  • Flexible deployment options with cloud and local implementations supported.

hashtag
What's New

hashtag
Security Bulletin

hashtag
Customer Notifications

Security Bulletin

  • Clarity LIMS v6.3.4 Release Notesarrow-up-right
    Clarity LIMS Product Analytics v1.5.0 Release Notes
    Illumina Run Manager Integration v1.1.0 Release Notes
    Investigation of OpenSSH vulnerability with Clarity LIMS
    17 July 2025 Clarity LIMS Hosted Instance Interruption - Resolvedarrow-up-right
    IPP v2.11 Release Notes
    MiSeq i100 Series Integration v1.1.0 Release Notes
    MiSeq i100 Series On-Prem Integration v1.1.0 Release Notes

    [17 July 2025 Clarity LIMS Hosted Instance Interruption - Resolved](customer-notifications/2025-july-17-clarity-lims-hosted-instance-interruption-resolved.md)