Home

Description

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

PUBLISHED Reserved 2026-04-28 | Published 2026-04-28 | Updated 2026-04-28 | Assigner mitre




MEDIUM: 6.6CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-829 Inclusion of Functionality from Untrusted Control Sphere

Product status

Default status
unaffected

4.3.0 (semver)
affected

27.0.0 (semver)
affected

30.0.0 (semver)
affected

33.0.0 (semver)
affected

References

bugs.launchpad.net/ironic/+bug/2148331

cve.org (CVE-2026-42510)

nvd.nist.gov (CVE-2026-42510)

Download JSON