Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Fedora 43 Keylime Critical Security Bypass CVE-2026-6420

fedora
Calendar Grey June 7, 2026
Dist Fedora Esm H88
Keylime v7.14.2 update fixes CVE-2026-6420 addressing security bypass in Fedora 43. Essential for secure TPM management.
Updating for Keylime release v7.14.2: This includes the fix for CVE-2026-6420

Summary

Keylime is a TPM based highly scalable remote boot attestation

and runtime integrity measurement solution.

Update Information:

Updating for Keylime release v7.14.2: This includes the fix for CVE-2026-6420. Update keylime-selinux policy to the latest version 44.1.0

Change Log

* Wed May 27 2026 Anderson Toshiyuki Sasaki - 7.14.2-1 - Updating for Keylime release v7.14.2 - This includes the fix for CVE-2026-6420. - Update keylime-selinux policy to the latest version 44.1.0

References


[ 1 ] Bug #2467277 - keylime-7.14.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=2467277 [ 2 ] Bug #2467584 - CVE-2026-6420 keylime: Keylime: Security bypass due to hardcoded TPM quote nonce [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2467584

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-513c495139' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: keylime
Product: Fedora 43
Version: 7.14.2
Release: 1.fc43
Summary: Open source TPM software for Bootstrapping and Maintaining Trust

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here