Vulnerability in Keylime Verifier Affects Red Hat's Trusted Platform Module
CVE-2026-6420
6.3MEDIUM
What is CVE-2026-6420?
A security issue has been identified in the Keylime verifier component, where it improperly utilizes a hardcoded challenge nonce for Trusted Platform Module (TPM) quote attestation, instead of a cryptographically secure random value. This flaw allows an attacker with root privileges on a monitored system to collect valid TPM quotes and replay them at a later time, effectively evading detection and compromising system integrity. This vulnerability specifically impacts deployments utilizing the push model.
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Red Hat would like to thank Keylime developers for reporting this issue.