https://seclists.org/oss-sec/2026/q2/286: OSSA-2026-008: OpenStack Ironic: Command Injection in Ironic IPMI Console Implementations (CVE-2026-42510) - errata 1
Published Apr 30, 2026
·Updated
Affected Software
1 affected component
Openstack Ironic
Frequently Asked Questions
1
What is the severity of CVE-2026-42510?
CVE-2026-42510 is classified as a high-severity vulnerability due to its potential for command injection.
2
How do I fix CVE-2026-42510?
To fix CVE-2026-42510, users should upgrade to the latest patched version of OpenStack Ironic as recommended in the official advisories.
3
What systems are affected by CVE-2026-42510?
CVE-2026-42510 affects OpenStack Ironic implementations utilizing IPMI console features.
4
What is the potential impact of CVE-2026-42510?
The potential impact of CVE-2026-42510 is that an attacker may execute arbitrary commands on the affected system.
5
When was CVE-2026-42510 published?
CVE-2026-42510 was published on April 30, 2026.