CVE-2015-5306 Information

Description

OpenStack Ironic Inspector (aka ironic-inspector or ironic-discoverd) when debug mode is enabled might allow remote attackers to access the Flask console and execute arbitrary Python code by triggering an error.

Reference

http://rhn.redhat.com/errata/RHSA-2015-2685.html https://access.redhat.com/errata/RHSA-2015:1929 https://bugs.launchpad.net/ironic-inspector/+bug/1506419 https://bugzilla.redhat.com/show_bug.cgi?id=1273698

Share on: