OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) by creating an image with a large virtual size that does not contain a large amount of data.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| nova(PyPI) | 0 | 12.0.0a0 | N/A |
CVSS Metrics