Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Danms

Researcher fromRed Hat
#31171of 53,624
8.2Total CVSS
Vulnerabilities · 1
PT-2026-20315
8.2
2026-01-01
Qemu · Qemu-Img · CVE-2026-24708
**Name of the Vulnerable Software and Affected Versions** OpenStack Nova (affected versions not specified) **Description** The software calls `qemu-img` without format restrictions when resizing images. A malicious QCOW header could potentially convince Nova's flat image backend to execute an unsafe image resize operation. The `qemu-img` function is involved in this issue. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.