In Keylime before 6.3.0, Revocation Notifier uses a fixed /tmp path for UNIX domain socket which can allow unprivileged users a method to prohibit keylime operations.
2022-09-21T19:15:10.120
2025-05-27T21:15:20.730
Modified
[email protected]
CVSSv3.1: 7.5 (HIGH)