ZeroHour

CVE-2021-3406

CVSS 3.1
9.8 critical
EPSS
<1%p49
Published
()
Modified
Description

A flaw was found in keylime 5.8.1 and older. The issue in the Keylime agent and registrar code invalidates the cryptographic chain of trust from the Endorsement Key certificate to agent attestations.

Vendors
keylimefedoraproject
Products
keylime, fedora
Weakness
CWE-347, CWE-295
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.