{
  "document": {
    "aggregate_severity": {
      "namespace": "https://access.redhat.com/security/updates/classification/",
      "text": "Important"
    },
    "category": "csaf_vex",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright © Red Hat, Inc. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://access.redhat.com/security/team/contact/",
      "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
      "name": "Red Hat Product Security",
      "namespace": "https://www.redhat.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-45832.json"
      }
    ],
    "title": "chromadb: ChromaDB: Authorization bypass in V1 collection-level endpoints",
    "tracking": {
      "current_release_date": "2026-07-31T09:54:10+00:00",
      "generator": {
        "date": "2026-07-31T09:54:10+00:00",
        "engine": {
          "name": "Red Hat SDEngine",
          "version": "5.3.8"
        }
      },
      "id": "CVE-2026-45832",
      "initial_release_date": "2026-06-12T15:11:46.697000+00:00",
      "revision_history": [
        {
          "date": "2026-06-12T15:11:46.697000+00:00",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2026-06-16T15:10:08+00:00",
          "number": "2",
          "summary": "Current version"
        },
        {
          "date": "2026-07-31T09:54:10+00:00",
          "number": "3",
          "summary": "Last generated version"
        }
      ],
      "status": "final",
      "version": "3"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux AI (RHEL AI) 3",
                "product": {
                  "name": "Red Hat Enterprise Linux AI (RHEL AI) 3",
                  "product_id": "red_hat_enterprise_linux_ai_(rhel_ai)_3",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:enterprise_linux_ai:3"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Enterprise Linux AI (RHEL AI) 3"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat OpenShift AI (RHOAI)",
                "product": {
                  "name": "Red Hat OpenShift AI (RHOAI)",
                  "product_id": "red_hat_openshift_ai_(rhoai)",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:openshift_ai"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat OpenShift AI (RHOAI)"
          },
          {
            "category": "product_version",
            "name": "rhelai3/bootc-cuda-rhel9",
            "product": {
              "name": "rhelai3/bootc-cuda-rhel9",
              "product_id": "rhelai3/bootc-cuda-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/bootc-cuda-rhel9?repository_url=registry.redhat.io/rhelai3/bootc-cuda-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhelai3/bootc-gaudi-rhel9",
            "product": {
              "name": "rhelai3/bootc-gaudi-rhel9",
              "product_id": "rhelai3/bootc-gaudi-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/bootc-gaudi-rhel9?repository_url=registry.redhat.io/rhelai3/bootc-gaudi-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhelai3/bootc-rocm-rhel9",
            "product": {
              "name": "rhelai3/bootc-rocm-rhel9",
              "product_id": "rhelai3/bootc-rocm-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/bootc-rocm-rhel9?repository_url=registry.redhat.io/rhelai3/bootc-rocm-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhelai3/disk-image-cuda-rhel9",
            "product": {
              "name": "rhelai3/disk-image-cuda-rhel9",
              "product_id": "rhelai3/disk-image-cuda-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/disk-image-cuda-rhel9?repository_url=registry.redhat.io/rhelai3/disk-image-cuda-rhel9"
              }
            }
          },
          {
            "category": "product_version",
            "name": "rhoai/odh-autorag-rhel9",
            "product": {
              "name": "rhoai/odh-autorag-rhel9",
              "product_id": "rhoai/odh-autorag-rhel9",
              "product_identification_helper": {
                "purl": "pkg:oci/odh-autorag-rhel9?repository_url=registry.redhat.io/rhoai/odh-autorag-rhel9"
              }
            }
          }
        ],
        "category": "vendor",
        "name": "Red Hat"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhelai3/bootc-cuda-rhel9 as a component of Red Hat Enterprise Linux AI (RHEL AI) 3",
          "product_id": "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9"
        },
        "product_reference": "rhelai3/bootc-cuda-rhel9",
        "relates_to_product_reference": "red_hat_enterprise_linux_ai_(rhel_ai)_3"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhelai3/bootc-gaudi-rhel9 as a component of Red Hat Enterprise Linux AI (RHEL AI) 3",
          "product_id": "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9"
        },
        "product_reference": "rhelai3/bootc-gaudi-rhel9",
        "relates_to_product_reference": "red_hat_enterprise_linux_ai_(rhel_ai)_3"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhelai3/bootc-rocm-rhel9 as a component of Red Hat Enterprise Linux AI (RHEL AI) 3",
          "product_id": "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9"
        },
        "product_reference": "rhelai3/bootc-rocm-rhel9",
        "relates_to_product_reference": "red_hat_enterprise_linux_ai_(rhel_ai)_3"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhelai3/disk-image-cuda-rhel9 as a component of Red Hat Enterprise Linux AI (RHEL AI) 3",
          "product_id": "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9"
        },
        "product_reference": "rhelai3/disk-image-cuda-rhel9",
        "relates_to_product_reference": "red_hat_enterprise_linux_ai_(rhel_ai)_3"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "rhoai/odh-autorag-rhel9 as a component of Red Hat OpenShift AI (RHOAI)",
          "product_id": "red_hat_openshift_ai_(rhoai):rhoai/odh-autorag-rhel9"
        },
        "product_reference": "rhoai/odh-autorag-rhel9",
        "relates_to_product_reference": "red_hat_openshift_ai_(rhoai)"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-45832",
      "cwe": {
        "id": "CWE-551",
        "name": "Incorrect Behavior Order: Authorization Before Parsing and Canonicalization"
      },
      "discovery_date": "2026-06-12T16:01:11.219936+00:00",
      "flags": [
        {
          "label": "vulnerable_code_not_in_execute_path",
          "product_ids": [
            "red_hat_openshift_ai_(rhoai):rhoai/odh-autorag-rhel9"
          ]
        }
      ],
      "ids": [
        {
          "system_name": "Red Hat Bugzilla ID",
          "text": "2488411"
        }
      ],
      "notes": [
        {
          "category": "description",
          "text": "A flaw was found in ChromaDB. All V1 collection-level endpoints in the Python project pass null values for tenant and database to the authorization layer. This allows a remote attacker to bypass authorization controls by utilizing these V1 endpoints. The primary consequence is unauthorized access, potentially leading to high impact on confidentiality and integrity of data.",
          "title": "Vulnerability description"
        },
        {
          "category": "summary",
          "text": "chromadb: ChromaDB: Authorization bypass in V1 collection-level endpoints",
          "title": "Vulnerability summary"
        },
        {
          "category": "other",
          "text": "This flaw is a post-authentication tenant-isolation bypass on ChromaDB’s V1 API — it does not grant unauthenticated access and does not enable code execution. RH AI products bundle a vulnerable chromadb version but do not run the Chroma Python FastAPI server as the default product API (AutoRAG uses Milvus/pgvector; RHEL AI bootc uses chromadb as a library).",
          "title": "Statement"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "known_affected": [
          "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9",
          "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9",
          "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9",
          "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9"
        ],
        "known_not_affected": [
          "red_hat_openshift_ai_(rhoai):rhoai/odh-autorag-rhel9"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://access.redhat.com/security/cve/CVE-2026-45832"
        },
        {
          "category": "external",
          "summary": "RHBZ#2488411",
          "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2488411"
        },
        {
          "category": "external",
          "summary": "https://www.cve.org/CVERecord?id=CVE-2026-45832",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-45832"
        },
        {
          "category": "external",
          "summary": "https://nvd.nist.gov/vuln/detail/CVE-2026-45832",
          "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-45832"
        },
        {
          "category": "external",
          "summary": "https://www.hiddenlayer.com/sai-security-advisory/2026-06-chromadb-4",
          "url": "https://www.hiddenlayer.com/sai-security-advisory/2026-06-chromadb-4"
        }
      ],
      "release_date": "2026-06-12T15:11:46.697000+00:00",
      "remediations": [
        {
          "category": "workaround",
          "details": "To mitigate this issue, restrict network access to the ChromaDB instance to trusted clients only. Configure firewall rules to limit inbound connections to the ports used by ChromaDB. This will reduce the attack surface by preventing unauthorized remote access to the vulnerable V1 collection-level endpoints. After applying firewall rules, ensure to reload or restart the firewall service for the changes to take effect.",
          "product_ids": [
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9"
          ]
        },
        {
          "category": "no_fix_planned",
          "details": "Will not fix",
          "product_ids": [
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 8.1,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N",
            "version": "3.1"
          },
          "products": [
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-autorag-rhel9"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Important",
          "product_ids": [
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-cuda-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-gaudi-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/bootc-rocm-rhel9",
            "red_hat_enterprise_linux_ai_(rhel_ai)_3:rhelai3/disk-image-cuda-rhel9",
            "red_hat_openshift_ai_(rhoai):rhoai/odh-autorag-rhel9"
          ]
        }
      ],
      "title": "chromadb: ChromaDB: Authorization bypass in V1 collection-level endpoints"
    }
  ]
}