CVE-2013-4463: Openstack Folsom

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) via a compressed QCOW2 image. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.

Affected products

  • Openstack Folsom: affected versions not specified
  • Openstack Grizzly: affected versions not specified
  • Openstack Havana: affected versions not specified

Published 2014-02-06. Last modified 2026-06-16.