RHSA-2025:0439: Moderate: Red Hat OpenStack Platform 18.0.4 (openstack-ironic) security update
Ironic is a project which aims to provision bare metal (as opposed tovirtual) machines by leveraging common technologies such as PXE boot andIPMI to cover a wide range of hardware, while supporting pluggable driversto allow vendor-specific functionality to be added.Bare Metal provisioningfor OpenStackSecurity Fix(es): Lack of checksum validation on images (CVE-2024-47211) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage listed in the References section.
Other sources
Moderate: Red Hat OpenStack Platform 18.0.4 (openstack-ironic) security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:0439?
The severity of RHSA-2025:0439 is classified as moderate.
How do I fix RHSA-2025:0439?
To fix RHSA-2025:0439, update the affected packages to version 21.4.5-18.0.20241207142602.9213ccd.el9.
Which products are affected by RHSA-2025:0439?
RHSA-2025:0439 affects Red Hat OpenStack Services on OpenShift and several packages including openstack-ironic and openstack-ironic-api.
What are the recommended package updates for RHSA-2025:0439?
The recommended package updates for RHSA-2025:0439 are openstack-ironic, openstack-ironic-api, openstack-ironic-common, and openstack-ironic-conductor to version 21.4.5-18.0.20241207142602.9213ccd.el9.
When was RHSA-2025:0439 announced?
RHSA-2025:0439 was announced in 2025.