A flaw was found in keylime 5.8.1 and older. The issue in the Keylime agent and registrar code invalidates the cryptographic chain of trust from the Endorsement Key certificate to agent attestations. References: https://github.com/keylime/keylime/security/advisories/GHSA-78f8-6c68-375m
Created keylime tracking bugs for this issue: Affects: fedora-all [bug 1932470]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.