Vulnerabilities > Keylime

DATE CVE VULNERABILITY TITLE RISK
2022-05-06 CVE-2022-1053 Improper Input Validation vulnerability in multiple products
Keylime does not enforce that the agent registrar data is the same when the tenant uses it for validation of the EK and identity quote and the verifier for validating the integrity quote.
network
low complexity
keylime fedoraproject CWE-20
critical
9.1
2021-02-25 CVE-2021-3406 Improper Certificate Validation vulnerability in multiple products
A flaw was found in keylime 5.8.1 and older.
network
low complexity
keylime fedoraproject CWE-295
critical
9.8