Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHBA-2025:20771 - Bug Fix Advisory
Issued:
2025-11-11
Updated:
2025-11-11

RHBA-2025:20771 - Bug Fix Advisory

  • Overview
  • Updated Packages

Synopsis

keylime bug fix and enhancement update

Type/Severity

Bug Fix Advisory

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for keylime is now available for Red Hat Enterprise Linux 9.

Description

For detailed information on changes in this release, see the Red Hat Enterprise Linux 9 Release Notes linked from the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • RHEL-78418 - Rebase keylime in RHEL 9.7 to at least 7.12.x
  • RHEL-93678 - Incorrect PEM password default after an update breaks keylime
  • RHEL-76926 - keylime directory /var/lib/keylime not populated in image mode
  • RHEL-77144 - /etc/keylime has incorrect ownership when installed to image-mode system
  • RHEL-104572 - Incorrect keylime tpmfiles.d configuration
  • RHEL-80455 - measured boot log parsing fails

CVEs

(none)

References

  • https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.7_release_notes/index
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
keylime-7.12.1-11.el9.src.rpm SHA-256: d1f28bab28c9987eb72e9bf7757aee8d7bc26dc4addec52eeec29712663f50a3
x86_64
keylime-7.12.1-11.el9.x86_64.rpm SHA-256: 816f75017d548f2c61d341b24be95bb3578f15335e6ffa4da78d7cb4f75c2754
keylime-base-7.12.1-11.el9.x86_64.rpm SHA-256: 9aa480cc6f847c5693156b7db43f5883f65a8f19916e78c8bf3faf8d364f7878
keylime-registrar-7.12.1-11.el9.x86_64.rpm SHA-256: 64a455bb53bfdde00e8ba58e9e662e67013bf8b9dee9eec8cba01fdf2c80b1b6
keylime-selinux-7.12.1-11.el9.noarch.rpm SHA-256: a2cd17af927c80d5d0d2a630b1098ffd9d9ffd26d30c4f5de829d8629f7fde39
keylime-tenant-7.12.1-11.el9.x86_64.rpm SHA-256: 2e7f1c9902ef6c4eab4acada7b0438ea26350d573c0eaa12054c202acc9194dc
keylime-verifier-7.12.1-11.el9.x86_64.rpm SHA-256: 8fabbf717c85c94a9b48bf29cf65cf27032487f59a63014feb788aad9fdc8503
python3-keylime-7.12.1-11.el9.x86_64.rpm SHA-256: 2e0b9d7798fb8c85601dbe8f750287f3ad8afe76ad1dda82ebe2688e89f0029f

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
keylime-7.12.1-11.el9.src.rpm SHA-256: d1f28bab28c9987eb72e9bf7757aee8d7bc26dc4addec52eeec29712663f50a3
s390x
keylime-7.12.1-11.el9.s390x.rpm SHA-256: 9c47bc0f9b677dc93dbf09e0c5947c68fa54956a46ca7f3bdb308e6f24d7bebc
keylime-base-7.12.1-11.el9.s390x.rpm SHA-256: 01c88388a43ceba1b6f81a3aada15b948593b5c160697050e30547772b2a19bf
keylime-registrar-7.12.1-11.el9.s390x.rpm SHA-256: 7cd1a982b6b9fd7c02200bbcd30f773a6a6bdd0aeb47a4fec5ffc8af38ccdf9d
keylime-selinux-7.12.1-11.el9.noarch.rpm SHA-256: a2cd17af927c80d5d0d2a630b1098ffd9d9ffd26d30c4f5de829d8629f7fde39
keylime-tenant-7.12.1-11.el9.s390x.rpm SHA-256: 998c3268d566e8ddadd99e8d02d98e0bc08771c30da11deb77a1e603c7636a5e
keylime-verifier-7.12.1-11.el9.s390x.rpm SHA-256: d31ddb05df405e5a9552a9082100bc6fa6e741b2d3ebfb1f85c633e036ca07a8
python3-keylime-7.12.1-11.el9.s390x.rpm SHA-256: 186281e9beccbb43facf722a7fecb6cac1b9e32cc2411dc5157fac606f1b56e5

Red Hat Enterprise Linux for Power, little endian 9

SRPM
keylime-7.12.1-11.el9.src.rpm SHA-256: d1f28bab28c9987eb72e9bf7757aee8d7bc26dc4addec52eeec29712663f50a3
ppc64le
keylime-7.12.1-11.el9.ppc64le.rpm SHA-256: 91105cb00d18975b637ef3e7530ea331dd0da9c28bf757f875c1e3dff196931f
keylime-base-7.12.1-11.el9.ppc64le.rpm SHA-256: f8308068d4338642b28f73233bc5cb24b41c739d4d26b5a878af0be1f9ffb860
keylime-registrar-7.12.1-11.el9.ppc64le.rpm SHA-256: 8dc6e977413115c02e7e353d60a396866ff0be683210327dde153683cdd9a1d1
keylime-selinux-7.12.1-11.el9.noarch.rpm SHA-256: a2cd17af927c80d5d0d2a630b1098ffd9d9ffd26d30c4f5de829d8629f7fde39
keylime-tenant-7.12.1-11.el9.ppc64le.rpm SHA-256: 32fe8c01ece073993fb67cfdfdaad230262a536d0fb1e0022b885506c3a845e4
keylime-verifier-7.12.1-11.el9.ppc64le.rpm SHA-256: 291d2a04266e7f451b81bcfb898cccb89f6a75181e31eba0552db3b75ec4eb64
python3-keylime-7.12.1-11.el9.ppc64le.rpm SHA-256: 453e903b31d59f94b12dd2e04fb369179b761b9b2ab9f53b865564ab4262e3fe

Red Hat Enterprise Linux for ARM 64 9

SRPM
keylime-7.12.1-11.el9.src.rpm SHA-256: d1f28bab28c9987eb72e9bf7757aee8d7bc26dc4addec52eeec29712663f50a3
aarch64
keylime-7.12.1-11.el9.aarch64.rpm SHA-256: 1356e57b1f6b6491941ea1c4698ecdb297a8a141d32b2f8c829a9f82b8b0aa6d
keylime-base-7.12.1-11.el9.aarch64.rpm SHA-256: 667646ce73299b7ed7bad23b798bcd4481f3c635df08205228bc97681ec61a38
keylime-registrar-7.12.1-11.el9.aarch64.rpm SHA-256: 31e0896797bd8b73e36ff7deb7e69287c8d6dd2bd304ff99a16b66dab33e9e5f
keylime-selinux-7.12.1-11.el9.noarch.rpm SHA-256: a2cd17af927c80d5d0d2a630b1098ffd9d9ffd26d30c4f5de829d8629f7fde39
keylime-tenant-7.12.1-11.el9.aarch64.rpm SHA-256: 6f94cf0a3f68a92e082cfcebd1101bab3f236926ac61166016445885faebe1ea
keylime-verifier-7.12.1-11.el9.aarch64.rpm SHA-256: 118fc226fb5c4ae4ce51baa7a2db8cbd8fb4f5de87ca02e14a047127870efa00
python3-keylime-7.12.1-11.el9.aarch64.rpm SHA-256: eda8c3bc3ee6f4fd56631a40572860381a60ec9ab13acd817016f29972b7ebce

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility