An image is:
It doesn’t have state and never changes.
A container is a running an instance of an image.
OCI delivers the file system with tarballs.
Firecracker wants is a set of block devices that Linux will mount as it boots up.