Information on source package ironic

Available versions

ReleaseVersion
bullseye1:16.0.3-1
bookworm1:21.1.0-3
bookworm (security)1:21.4.4-0+deb12u1
trixie1:29.0.0-7
trixie (security)1:29.0.5-0+deb13u2
forky1:35.0.1-5
sid1:35.0.1-5

Open issues

BugbullseyebookwormtrixieforkysidDescription
CVE-2026-48681vulnerablefixedfixedvulnerablevulnerableOpenStack Ironic through before 35.0.2 allows file overwrite via direc ...
CVE-2026-46447vulnerablefixedfixedvulnerablevulnerableOpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE ...
CVE-2026-44919vulnerable (no DSA)fixedfixedfixedfixedIn OpenStack Ironic through 35.x before a3f6d73, during image handling ...
CVE-2026-44917vulnerablefixedfixedvulnerablevulnerableOpenStack Ironic before 35.0.2 allows a malicious authenticated projec ...
CVE-2026-44916vulnerable (no DSA)fixedfixedfixedfixedIn OpenStack Ironic before 35.0.2 (in a certain non-default configurat ...
CVE-2026-42997vulnerable (no DSA)fixedfixedfixedfixedAn issue was discovered in idrac in OpenStack Ironic before 35.0.1. Du ...
CVE-2026-42510vulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)fixedfixedOpenStack Ironic before 35.0.1 allows ipmitool execution in a non-defa ...
CVE-2025-44021vulnerable (no DSA, postponed)vulnerable (no DSA)fixedfixedfixedOpenStack Ironic before 29.0.1 can write unintended files to a target ...
CVE-2024-47211vulnerable (no DSA, postponed)vulnerable (no DSA)fixedfixedfixedIn OpenStack Ironic before 21.4.4, 22.x and 23.x before 23.0.3, 23.x a ...
CVE-2024-44082vulnerable (no DSA, postponed)fixedfixedfixedfixedIn OpenStack Ironic before 26.0.1 and ironic-python-agent before 9.13. ...

Resolved issues

BugDescription
CVE-2026-50589In OpenStack Ironic 32 before 37.0.0, an unauthenticated malicious use ...
CVE-2016-4985The ironic-api service in OpenStack Ironic before 4.2.5 (Liberty) and ...
CVE-2015-7514OpenStack Ironic 4.2.0 through 4.2.1 does not "clean" the disk after u ...

Security announcements

DSA / DLADescription
DSA-6341-1ironic - security update

Search for package or bug name: Reporting problems