Infinite Loop Vulnerability in OpenStack Ironic Image Handling
CVE-2026-44919
4.3MEDIUM
What is CVE-2026-44919?
An infinite loop vulnerability exists in OpenStack Ironic during the image handling process. Specifically, this issue can be triggered via the file:///dev/zero URL, resulting in a failure to complete checksum calculations effectively. This flaw may cause performance degradation and can disrupt normal operations within the affected OpenStack environments.
Affected Version(s)
Ironic 23.0.4 < 29.0.6
Ironic 30.0.0 < 32.0.2
Ironic 33.0.0 < 35.0.2
