CVE detail
CVE-2025-13609
A vulnerability has been identified in keylime where an attacker can exploit this flaw by registering a new agent using a different Trusted Platform Module (TPM) device but claiming an existing agent's unique identifier (UUID). This action overwrites the legitimate agent's identity, enabling the attacker to impersonate the compromised agent and potentially bypass security controls.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
No excerpt available.
Exploitgithub.comNov 24, 2025, 6:15 PM- https://bugzilla.redhat.com/show_bug.cgi?id=2416761bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/security/cve/CVE-2025-13609access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2026:0429access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2025:23852access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2025:23735access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2025:23628access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2025:23210access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM - https://access.redhat.com/errata/RHSA-2025:23201access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comNov 24, 2025, 6:15 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-57024CVSS 6.9 · Medium
A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated,…
- CVE-2026-5794CVSS 4.9 · Medium
A vulnerability affecting the detailed versions of Cryptobox allows a legitimate user to prevent another to login by triggering an account lockout via sending a specially crafted…
- CVE-2025-59048CVSS 8.1 · High
OpenBao's AWS Plugin generates AWS access credentials based on IAM policies. Prior to version 0.1.1, the AWS Plugin is vulnerable to cross-account IAM role Impersonation in the AW…
- CVE-2024-41146CVSS 4.6 · Medium
Use of Multiple Resources with Duplicate Identifier (CWE-694) in the Controller 6000 and Controller 7000 Platforms could allow an attacker with physical access to HBUS communicati…
- CVE-2022-23721CVSS 3.8 · Low
PingID integration for Windows login prior to 2.9 does not handle duplicate usernames, which can lead to a username collision when two people with the same username are provisione…
- CVE-2023-20100CVSS 6.8 · Medium
A vulnerability in the access point (AP) joining process of the Control and Provisioning of Wireless Access Points (CAPWAP) protocol of Cisco IOS XE Software for Wireless LAN Cont…