Launch Week Day 1: Announcing Security Design Review
MEDIUM 4.3 PyPI

OpenStack Ironic: Pre-Validation Checksum Calculation allows Denial of Service (DoS) via Infinite Block Devices

GHSA-4g73-w726-53h3 · CVE-2026-44919

Published · Modified

Description

In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can occur via the file:///dev/zero URL.

Ready to move

Start Securing

Free, no credit card | First findings in minutes