Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-50589

Опубликовано: 05 июн. 2026
Источник: debian
EPSS Низкий

Описание

In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ironicfixed1:35.0.1-5package
ironicnot-affectedtrixiepackage
ironicnot-affectedbookwormpackage
ironicnot-affectedbullseyepackage

Примечания

  • https://bugs.launchpad.net/ironic/+bug/2154288

EPSS

Процентиль: 36%
0.00433
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
2 месяца назад

In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash.

CVSS3: 7.5
redhat
2 месяца назад

In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash.

CVSS3: 5.3
nvd
2 месяца назад

In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC service and effect a service crash.

CVSS3: 5.3
github
2 месяца назад

OpenStack Ironic: Crafted JSON String to Certain Endpoints on the API or JSON-RPC Service May Result in Service Crash

EPSS

Процентиль: 36%
0.00433
Низкий