Cryptographic Chain of Trust Invalidity in Keylime 5.8.1 and Older

Cryptographic Chain of Trust Invalidity in Keylime 5.8.1 and Older

CVE-2021-3406 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

A flaw was found in keylime 5.8.1 and older. The issue in the Keylime agent and registrar code invalidates the cryptographic chain of trust from the Endorsement Key certificate to agent attestations.

Learn more about our Web Application Penetration Testing UK.