openstack havana CVE-2013-4469 vulnerability in OpenStack Products
Published on November 2, 2013

OpenStack Compute (Nova) Folsom, Grizzly, and Havana, when use_cow_images is set to False, does not verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) by transferring an image with a large virtual size that does not contain a large amount of data from Glance. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.

Vendor Advisory NVD


Products Associated with CVE-2013-4469

Want to know whenever a new CVE is published for OpenStack products? stack.watch will email you.

 
 
 

Exploit Probability

EPSS
0.06%
Percentile
18.77%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.