Логотип exploitDog
bind:"GHSA-4jqp-9qjv-57m2" OR bind:"CVE-2026-1709"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-4jqp-9qjv-57m2" OR bind:"CVE-2026-1709"

Количество 8

Количество 8

github логотип

GHSA-4jqp-9qjv-57m2

около 2 месяцев назад

Keylime Missing Authentication for Critical Function and Improper Authentication

CVSS3: 9.4
EPSS: Низкий
ubuntu логотип

CVE-2026-1709

около 2 месяцев назад

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
EPSS: Низкий
redhat логотип

CVE-2026-1709

около 2 месяцев назад

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
EPSS: Низкий
nvd логотип

CVE-2026-1709

около 2 месяцев назад

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
EPSS: Низкий
rocky логотип

RLSA-2026:2225

около 2 месяцев назад

Critical: keylime security update

EPSS: Низкий
rocky логотип

RLSA-2026:2224

около 2 месяцев назад

Critical: keylime security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-2225

около 2 месяцев назад

ELSA-2026-2225: keylime security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-2224

около 2 месяцев назад

ELSA-2026-2224: keylime security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4jqp-9qjv-57m2

Keylime Missing Authentication for Critical Function and Improper Authentication

CVSS3: 9.4
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-1709

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2026-1709

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2026-1709

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.

CVSS3: 9.4
0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2026:2225

Critical: keylime security update

0%
Низкий
около 2 месяцев назад
rocky логотип
RLSA-2026:2224

Critical: keylime security update

0%
Низкий
около 2 месяцев назад
oracle-oval логотип
ELSA-2026-2225

ELSA-2026-2225: keylime security update (CRITICAL)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-2224

ELSA-2026-2224: keylime security update (CRITICAL)

около 2 месяцев назад

Уязвимостей на страницу