Логотип exploitDog
bind:"GHSA-xh5w-g8gq-r3v9" OR bind:"CVE-2025-13609"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-xh5w-g8gq-r3v9" OR bind:"CVE-2025-13609"

Количество 8

Количество 8

github логотип

GHSA-xh5w-g8gq-r3v9

3 месяца назад

Keylime allows users to register new agents by recycling existing UUIDs when using different TPM devices

CVSS3: 8.2
EPSS: Низкий
ubuntu логотип

CVE-2025-13609

3 месяца назад

A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted Platform Module (TPM) device but claiming an existing agent's unique identifier (UUID). This action overwrites the legitimate agent's identity, enabling the attacker to impersonate the compromised agent and potentially bypass security controls.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2025-13609

3 месяца назад

A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted Platform Module (TPM) device but claiming an existing agent's unique identifier (UUID). This action overwrites the legitimate agent's identity, enabling the attacker to impersonate the compromised agent and potentially bypass security controls.

CVSS3: 8.2
EPSS: Низкий
rocky логотип

RLSA-2025:23210

около 2 месяцев назад

Important: keylime security update

EPSS: Низкий
rocky логотип

RLSA-2025:23201

около 2 месяцев назад

Important: keylime security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-23210

около 2 месяцев назад

ELSA-2025-23210: keylime security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-23201

около 2 месяцев назад

ELSA-2025-23201: keylime security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20159-1

2 месяца назад

Security update for keylime

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xh5w-g8gq-r3v9

Keylime allows users to register new agents by recycling existing UUIDs when using different TPM devices

CVSS3: 8.2
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2025-13609

A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted Platform Module (TPM) device but claiming an existing agent's unique identifier (UUID). This action overwrites the legitimate agent's identity, enabling the attacker to impersonate the compromised agent and potentially bypass security controls.

CVSS3: 8.2
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-13609

A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted Platform Module (TPM) device but claiming an existing agent's unique identifier (UUID). This action overwrites the legitimate agent's identity, enabling the attacker to impersonate the compromised agent and potentially bypass security controls.

CVSS3: 8.2
0%
Низкий
3 месяца назад
rocky логотип
RLSA-2025:23210

Important: keylime security update

0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2025:23201

Important: keylime security update

0%
Низкий
около 2 месяцев назад
oracle-oval логотип
ELSA-2025-23210

ELSA-2025-23210: keylime security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2025-23201

ELSA-2025-23201: keylime security update (IMPORTANT)

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20159-1

Security update for keylime

2 месяца назад

Уязвимостей на страницу