What is CVE-2026-74250?
In OpenStack Ironic versions before 38.0.1, the autodetect deploy interface may fail to run cleaning immediately after enrollment or switching to it, potentially leaving residual data on the device. Upgrading Ironic to version 38.0.1 or later is recommended for affected systems.
Azərbaycanca: OpenStack Ironic-in 38.0.1-dən əvvəlki versiyalarında autodetect deploy interfeysi enrollment zamanı və ya ona keçid edildikdə cleaning prosesini işə salmaya bilər ki, bu da cihazda qalıq məlumatların saxlanmasına səbəb ola bilər. Təsirə məruz qalan sistemlərdə Ironic-i ən azı 38.0.1 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: OpenStack
FAQ2
Which functionality of OpenStack Ironic is affected by CVE-2026-74250?
The vulnerability affects the autodetect deploy interface, which may fail to run the cleaning process immediately after enrollment or when switching to it.
What is the potential impact of CVE-2026-74250?
Due to this vulnerability, residual data may remain on the device, leaving it uncleaned.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.