Open Source Security mailing list@oss_securityDisclosure
The post announces CVE-2026-24708 in OpenStack Nova, detailing that unrestrained qemu-img calls can lead to unsafe image resizing when a malicious QCOW header is used, with no evidence of exploitation or patch yet.
CVE@CVEnewDisclosure
The post announces a vulnerability in OpenStack Nova that allows writing a malicious QCOW header to a root or epoxy disk, but it provides only a brief technical description without any PoC, exploit code, or patch information.
Infoflowcloud@infoflowcloudDisclosure
A vulnerability in OpenStack Nova (CVE-2026-24708) allows malicious QCOW header writes to root or ephemer disks, affecting versions before 30.2.2, 31.2.1, and 32.1.1.
The Hacker Wire@TheHackerWireDisclosure
The post announces a high‑severity vulnerability in OpenStack Nova (CVE‑2026‑24708) that allows an attacker to write a malicious QCOW header to a root or temporary disk and trigger a resize, potentially enabling further exploitation.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The post merely references CVE‑2026‑24708 with links to a vulnerability database, offering no substantive details about exploitation, mitigation, or technical specifics.