vulnerability

SUSE: CVE-2021-43310: SUSE Linux Security Advisory

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Sep 21, 2022
Added
Oct 26, 2022
Modified
Jan 28, 2025

Description

A vulnerability in Keylime before 6.3.0 allows an attacker to craft a request to the agent that resets the U and V keys as if the agent were being re-added to a verifier. This could lead to a remote code execution.

Solutions

suse-upgrade-keylime-agentsuse-upgrade-keylime-configsuse-upgrade-keylime-firewalldsuse-upgrade-keylime-registrarsuse-upgrade-keylime-tpm_cert_storesuse-upgrade-keylime-verifiersuse-upgrade-python3-keylime
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.