Alerts This Week
Warning Icon 1 666
Alerts This Week
Warning Icon 1 666

Fedora 44 keylime Critical Update CVE-2026-1709 CVE-2025-13609

fedora
Calendar Grey March 7, 2026
Dist Fedora Esm H88
Fedora 44 keylime crucial update addresses authentication bypass issues and identity takeover flaws.
Update keylime to version 7.14.1 and keylime-agent-rust to version 0.2.9 Fixes: CVE-2026-1709 and CVE-2025-13609

Summary

Keylime is a TPM based highly scalable remote boot attestation

and runtime integrity measurement solution.

Update Information:

Update keylime to version 7.14.1 and keylime-agent-rust to version 0.2.9 Fixes: CVE-2026-1709 and CVE-2025-13609

Change Log

* Fri Feb 13 2026 Sergio Correia - 7.14.1-1 - Updating for Keylime release v7.14.1

References


[ 1 ] Bug #2416761 - CVE-2025-13609 keylime: Keylime: Registrar allows identity takeover via duplicate UUID registration https://bugzilla.redhat.com/show_bug.cgi?id=2416761 [ 2 ] Bug #2435514 - CVE-2026-1709 keylime: Keylime: Authentication bypass allows unauthorized administrative operations due to missing client-side TLS authentication https://bugzilla.redhat.com/show_bug.cgi?id=2435514

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-2b8b223cf0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: keylime
Product: Fedora 44
Version: 7.14.1
Release: 1.fc44
Summary: Open source TPM software for Bootstrapping and Maintaining Trust

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here