CVE-2026-1709
CRITICALKeylime >=7.12.0 <7.12.2 - Unauthenticated Administrative Operations via TLS Authentication Bypass
Title source: llmDescription
A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing agents, retrieving public Trusted Platform Module (TPM) data, and deleting agents, by connecting without presenting a client certificate.
References (5)
Core 5
Core References
Vendor Advisory vendor-advisory
x_refsource_redhat
https://access.redhat.com/errata/RHSA-2026:2224
Vendor Advisory vendor-advisory
x_refsource_redhat
https://access.redhat.com/errata/RHSA-2026:2225
Vendor Advisory vendor-advisory
x_refsource_redhat
https://access.redhat.com/errata/RHSA-2026:2298
Vendor Advisory vdb-entry
x_refsource_redhat
https://access.redhat.com/security/cve/CVE-2026-1709
Issue Tracking issue-tracking
x_refsource_redhat
https://bugzilla.redhat.com/show_bug.cgi?id=2435514
Scores
CVSS v3
9.4
EPSS
0.0003
EPSS Percentile
7.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-322
Status
published
Products (14)
keylime/keylime
< 7.12.0
pypi/keylime
7.12.0 - 7.12.2PyPI
redhat/enterprise_linux
9.0
redhat/enterprise_linux
10.0
redhat/enterprise_linux_eus
10.0
redhat/enterprise_linux_for_arm_64
9.0_aarch64
redhat/enterprise_linux_for_arm_64
10.0_aarch64
redhat/enterprise_linux_for_arm_64_eus
10.0_aarch64
redhat/enterprise_linux_for_ibm_z_systems
9.0_s390x
redhat/enterprise_linux_for_ibm_z_systems
10.0_s390x
... and 4 more
Published
Feb 06, 2026
Tracked Since
Feb 18, 2026