OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) via a compressed QCOW2 image. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| nova(PyPI) | 0 | 12.0.0a0 | N/A |
CVSS Metrics