CVE-2026-46447

OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openstack:ironic:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:ironic:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:ironic:*:*:*:*:*:*:*:*
cpe:2.3:a:openstack:ironic:*:*:*:*:*:*:*:*

History

04 Jun 2026, 18:41

Type Values Removed Values Added
References () https://bugs.launchpad.net/ironic/+bug/2150624 - () https://bugs.launchpad.net/ironic/+bug/2150624 - Issue Tracking
References () https://security.openstack.org/ossa/OSSA-2026-017.html - () https://security.openstack.org/ossa/OSSA-2026-017.html - Patch, Vendor Advisory
References () http://www.openwall.com/lists/oss-security/2026/06/03/11 - () http://www.openwall.com/lists/oss-security/2026/06/03/11 - Mailing List, Third Party Advisory
CPE cpe:2.3:a:openstack:ironic:*:*:*:*:*:*:*:*
First Time Openstack
Openstack ironic

04 Jun 2026, 04:17

Type Values Removed Values Added
Summary (en) OpenStack Ironic through 35.0.x allows Boot Script Injection. (en) OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.8
CWE CWE-669

03 Jun 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-03 22:16

Updated : 2026-06-04 18:41


NVD link : CVE-2026-46447

Mitre link : CVE-2026-46447

CVE.ORG link : CVE-2026-46447


JSON object : View

Products Affected

openstack

  • ironic
CWE
CWE-669

Incorrect Resource Transfer Between Spheres