Issued at: 2026-02-13
Updated at: 2026-02-14
Synopsis
Critical: keylime security update
Description
Keylime is a TPM based highly scalable remote boot attestation and runtime integrity measurement solution.
Security Fix(es):
* keylime: Keylime: Authentication bypass allows unauthorized administrative operations due to missing client-side TLS authentication (CVE-2026-1709)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected products
Rocky Linux 9 aarch64
Rocky Linux 9 ppc64le
Rocky Linux 9 s390x
Rocky Linux 9 x86_64
Fixes
2435514
CVEs
CVE-2026-1709
Affected packages
Rocky Linux 9 s390x - AppStream
keylime-base-0:7.12.1-11.el9_7.4.s390x.rpm
keylime-0:7.12.1-11.el9_7.4.s390x.rpm
keylime-0:7.12.1-11.el9_7.4.src.rpm
keylime-registrar-0:7.12.1-11.el9_7.4.s390x.rpm
keylime-selinux-0:7.12.1-11.el9_7.4.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.4.s390x.rpm
keylime-verifier-0:7.12.1-11.el9_7.4.s390x.rpm
python3-keylime-0:7.12.1-11.el9_7.4.s390x.rpm
Rocky Linux 9 x86_64 - AppStream
keylime-base-0:7.12.1-11.el9_7.4.x86_64.rpm
keylime-0:7.12.1-11.el9_7.4.src.rpm
keylime-0:7.12.1-11.el9_7.4.x86_64.rpm
keylime-registrar-0:7.12.1-11.el9_7.4.x86_64.rpm
keylime-selinux-0:7.12.1-11.el9_7.4.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.4.x86_64.rpm
keylime-verifier-0:7.12.1-11.el9_7.4.x86_64.rpm
python3-keylime-0:7.12.1-11.el9_7.4.x86_64.rpm
Rocky Linux 9 aarch64 - AppStream
keylime-0:7.12.1-11.el9_7.4.aarch64.rpm
keylime-0:7.12.1-11.el9_7.4.src.rpm
keylime-base-0:7.12.1-11.el9_7.4.aarch64.rpm
keylime-registrar-0:7.12.1-11.el9_7.4.aarch64.rpm
keylime-selinux-0:7.12.1-11.el9_7.4.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.4.aarch64.rpm
keylime-verifier-0:7.12.1-11.el9_7.4.aarch64.rpm
python3-keylime-0:7.12.1-11.el9_7.4.aarch64.rpm
Rocky Linux 9 ppc64le - AppStream
keylime-0:7.12.1-11.el9_7.4.ppc64le.rpm
keylime-0:7.12.1-11.el9_7.4.src.rpm
keylime-base-0:7.12.1-11.el9_7.4.ppc64le.rpm
keylime-registrar-0:7.12.1-11.el9_7.4.ppc64le.rpm
keylime-selinux-0:7.12.1-11.el9_7.4.noarch.rpm
keylime-tenant-0:7.12.1-11.el9_7.4.ppc64le.rpm
keylime-verifier-0:7.12.1-11.el9_7.4.ppc64le.rpm
python3-keylime-0:7.12.1-11.el9_7.4.ppc64le.rpm