Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-47211

Опубликовано: 04 окт. 2024
Источник: debian
EPSS Низкий

Описание

In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw format for streaming.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ironicfixed1:26.1.0-1package
ironicno-dsabookwormpackage
ironicpostponedbullseyepackage

Примечания

  • https://security.openstack.org/ossa/OSSA-2024-004.html

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw format for streaming.

CVSS3: 6.3
redhat
больше 1 года назад

In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw format for streaming.

CVSS3: 5.3
nvd
больше 1 года назад

In OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x and 24.x before 24.1.3, and 25.x and 26.x before 26.1.0, there is a lack of checksum validation of supplied image_source URLs when configured to convert images to a raw format for streaming.

CVSS3: 5.3
github
больше 1 года назад

OpenStack Ironic fails to verify checksums of supplied image_source URLs

EPSS

Процентиль: 40%
0.00184
Низкий