Issued at: 2025-12-17
Updated at: 2025-12-29
Synopsis
Important: keylime security update
Description
Keylime is a TPM based highly scalable remote boot attestation and runtime integrity measurement solution.
Security Fix(es):
* keylime: Keylime: Registrar allows identity takeover via duplicate UUID registration (CVE-2025-13609)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected products
Rocky Linux 9 aarch64
Rocky Linux 9 ppc64le
Rocky Linux 9 s390x
Rocky Linux 9 x86_64
Fixes
2416761
CVEs
CVE-2025-13609
Affected packages
Rocky Linux 9 aarch64 - AppStream
keylime-0:7.12.1-11.el9_7.3.aarch64.rpm
keylime-0:7.12.1-11.el9_7.3.src.rpm
keylime-base-0:7.12.1-11.el9_7.3.aarch64.rpm
keylime-registrar-0:7.12.1-11.el9_7.3.aarch64.rpm
keylime-selinux-0:7.12.1-11.el9_7.3.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.3.aarch64.rpm
keylime-verifier-0:7.12.1-11.el9_7.3.aarch64.rpm
python3-keylime-0:7.12.1-11.el9_7.3.aarch64.rpm
Rocky Linux 9 ppc64le - AppStream
keylime-0:7.12.1-11.el9_7.3.ppc64le.rpm
keylime-0:7.12.1-11.el9_7.3.src.rpm
keylime-base-0:7.12.1-11.el9_7.3.ppc64le.rpm
keylime-registrar-0:7.12.1-11.el9_7.3.ppc64le.rpm
keylime-selinux-0:7.12.1-11.el9_7.3.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.3.ppc64le.rpm
keylime-verifier-0:7.12.1-11.el9_7.3.ppc64le.rpm
python3-keylime-0:7.12.1-11.el9_7.3.ppc64le.rpm
Rocky Linux 9 s390x - AppStream
keylime-0:7.12.1-11.el9_7.3.s390x.rpm
keylime-0:7.12.1-11.el9_7.3.src.rpm
keylime-base-0:7.12.1-11.el9_7.3.s390x.rpm
keylime-registrar-0:7.12.1-11.el9_7.3.s390x.rpm
keylime-selinux-0:7.12.1-11.el9_7.3.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.3.s390x.rpm
keylime-verifier-0:7.12.1-11.el9_7.3.s390x.rpm
python3-keylime-0:7.12.1-11.el9_7.3.s390x.rpm
Rocky Linux 9 x86_64 - AppStream
keylime-0:7.12.1-11.el9_7.3.src.rpm
keylime-0:7.12.1-11.el9_7.3.x86_64.rpm
keylime-base-0:7.12.1-11.el9_7.3.x86_64.rpm
keylime-registrar-0:7.12.1-11.el9_7.3.x86_64.rpm
keylime-selinux-0:7.12.1-11.el9_7.3.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.3.x86_64.rpm
keylime-verifier-0:7.12.1-11.el9_7.3.x86_64.rpm
python3-keylime-0:7.12.1-11.el9_7.3.x86_64.rpm