惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

I
InfoQ
C
CERT Recently Published Vulnerability Notes
The Last Watchdog
The Last Watchdog
P
Proofpoint News Feed
D
Darknet – Hacking Tools, Hacker News & Cyber Security
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
GbyAI
GbyAI
T
Tenable Blog
博客园 - 三生石上(FineUI控件)
P
Privacy & Cybersecurity Law Blog
Simon Willison's Weblog
Simon Willison's Weblog
Jina AI
Jina AI
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
T
Tor Project blog
博客园_首页
F
Fortinet All Blogs
博客园 - Franky
Latest news
Latest news
Last Week in AI
Last Week in AI
T
Threat Research - Cisco Blogs
Scott Helme
Scott Helme
L
LINUX DO - 热门话题
U
Unit 42
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Hugging Face - Blog
Hugging Face - Blog
D
Docker
Project Zero
Project Zero
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
MongoDB | Blog
MongoDB | Blog
F
Full Disclosure
D
DataBreaches.Net
Google DeepMind News
Google DeepMind News
Cisco Talos Blog
Cisco Talos Blog
Y
Y Combinator Blog
WordPress大学
WordPress大学
C
Cyber Attacks, Cyber Crime and Cyber Security
H
Help Net Security
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
月光博客
月光博客
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
Blog — PlanetScale
Blog — PlanetScale
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
S
Schneier on Security
C
Cybersecurity and Infrastructure Security Agency CISA
P
Proofpoint News Feed
PCI Perspectives
PCI Perspectives
Cloudbric
Cloudbric
V
Visual Studio Blog
Recorded Future
Recorded Future
人人都是产品经理
人人都是产品经理

OpenStack - Recent changes [en]

Security Notes - OpenStack OSSN/OSSN-0098 - OpenStack User:ZlixnupTop - OpenStack OpenStack OpenStack Meetings/InfraTeamMeeting - OpenStack User:Jibzfloopgraip - OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack User:Normanroppy - OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack OpenStack Difference between revisions of "Meetings/QATeamMeeting" OpenStack Difference between revisions of "CinderMeetings" OpenStack OpenStack OpenStack User:Mufftroxkeere - OpenStack OpenStack 错误 - OpenStack User talk:Normanamoup - OpenStack User:Normanamoup - OpenStack OpenStack OpenStack OpenStack User:Vernonclife - OpenStack User:ForloveBlics - OpenStack User:RobertFap - OpenStack User:Victorbam - OpenStack User:Wompvlimdiaks - OpenStack User:EliseRose - OpenStack “Post quantum openstack”的版本间的差异 - OpenStack User:DonaldJog - OpenStack StarlingX/Containers/Applications/HowToAddNewFluxCDAppInSTX - OpenStack User:Vincentthern - OpenStack User:Robertaided - OpenStack Difference between revisions of "Meetings/InfraTeamMeeting" CinderHibiscusPTGSummary - OpenStack Difference between revisions of "CinderHibiscusPTGSummary" Difference between revisions of "Edge Computing Group" Difference between revisions of "Meetings/Nova" Difference between revisions of "Meetings/NeutronDrivers" “Python Client Library (Marconi)”的版本间的差异 - OpenStack Python Client Library (Marconi) - OpenStack User:JamesCence - OpenStack “StarlingX/Releases”的版本间的差异 - OpenStack “Operations/Meetups”的版本间的差异 - OpenStack “Edge Computing Group”的版本间的差异 - OpenStack User:Doramaland axola - OpenStack User:Josephhek - OpenStack User:CharlesDrapy - OpenStack User:DonaldNax - OpenStack User:Charlesjet - OpenStack User:Marioraith - OpenStack User:GustavoAburf - OpenStack “Technical Committee Tracker”的版本间的差异 - OpenStack Technical Committee Tracker - OpenStack User:HaroldNow - OpenStack User:Antoniobag - OpenStack User:Esmeraldosixq - OpenStack User:RonniAbimi - OpenStack “OSSN/OSSN-0095”的版本间的差异 - OpenStack OSSN/OSSN-0095 - OpenStack “Security Notes”的版本间的差异 - OpenStack Security Notes - OpenStack User:SoniaTed - OpenStack User:Theresalag - OpenStack User:MarieNeumn - OpenStack User:FrancesAdate - OpenStack User:JacobReaft - OpenStack User:DanielHoutt - OpenStack User:Jesseedism - OpenStack User:Esmeraldosnxi - OpenStack User:ScottLat - OpenStack User:Gribmookmaync - OpenStack User:Esmeraldoshjp - OpenStack “Manila/Meetings”的版本间的差异 - OpenStack User:Esmeraldostbd - OpenStack User:Esmeraldosfrt - OpenStack “Meetings/QATeamMeeting”的版本间的差异 - OpenStack User:Grobsnobwef - OpenStack User:Esmeraldosjoy - OpenStack User:SwhegrRib - OpenStack “ThirdPartySystems”的版本间的差异 - OpenStack “Manila”的版本间的差异 - OpenStack User:Jameswhend - OpenStack “Network/Meetings”的版本间的差异 - OpenStack “Swift/Etherpads”的版本间的差异 - OpenStack
“OSSN/OSSN-0100”的版本间的差异 - OpenStack
Jay Faulkner · 2026-06-17 · via OpenStack - Recent changes [en]

2026年6月16日 (二) 20:44的版本

Command Injection in IPA via chroot Execution of Tenant-Controlled binaries ---

目录

  • 1 Summary
  • 2 Affected Services / Software
  • 3 Discussion
  • 4 Recommended Actions
    • 4.1 Patches
      • 4.1.1 Ironic
      • 4.1.2 Ironic Python Agent
  • 5 Credits
  • 6 Contacts / References

Summary

Tuomo Tanskanen (Ericsson Software Technology) and Dmitry Tantsur (Red Hat) from the Metal3.io Security Team reported a vulnerability in Ironic Python Agent (IPA) when deploying a partition image that lacks boot artifacts. A malicious partition image can include crafted grub-install binary or other arbitrary binaries in the chroot path which IPA executes on the provisioning network host. This affects all partition images that require Ironic to manage the bootloader installation (BIOS-booted nodes without boot artifacts).

The practical impact is limited; the attacker needs the ability to supply a partition image for bare-metal deployment and at the point of exploitation, IPA holds only an outdated agent_token and a heavily redacted node object.

Whole disk images are not affected and partition images that include their own EFI boot artifacts at /boot and /efi are also not affected as Ironic copies them without executing grub-install.

Affected Services / Software

  • ironic: <29.0.6, >=30.0.0 <32.0.2, >=33.0.0 <35.0.2, >=36.0.0 <37.0.0
  • ironic-python-agent: <10.2.3, >=11.0.0 <11.2.1, >=11.3.0 <11.5.1

Discussion

As it is not feasible to secure execution of a bootloader install binary due to technical limitations, the Ironic team has chosen to make this feature optional and disabled by default in the current development version.

Backported versions of this change do not enable this restriction by default to avoid breaking existing installations.

The vulnerable code path has existed for the entirety of the history of Ironic Python Agent, however, there are safeguards in place to prevent escalation of privileges from the provisioning network. Additionally, prior to Ironic 17.0.0, only cloud administrators could supply images for deployment, limiting the impact of this issue.

Recommended Actions

Apply the provided Ironic and Ironic-Python-Agent patches.

Evaluate your use cases; flip ``CONF.agent.enable_bios_bootloader_install`` to ``False`` on Ironic conductors once confirming you are not using any partition images relying on a bootloader installation.

Patches

The following reviews contain the fix for this issue:

Ironic
Ironic Python Agent

Credits

Dmitry Tantsur, Red Hat Tuomo Tanskanen, Ericsson Software Technology Metal3.io Security Team

Contacts / References

Authors:

  • Jay Faulkner, G-Research Open Source Software (GR-OSS)

This OSSN: https://wiki.openstack.org/wiki/OSSN/OSSN-0100 Original Launchpad bug: https://bugs.launchpad.net/ironic-python-agent/+bug/2148310 Mailing List : [security-sig] tag on openstack-discuss@lists.openstack.org OpenStack Security : https://security.openstack.org/ CVE: CVE-2026-43003