CVE Alert: CVE-2025-32386

Vulnerability Summary: CVE-2025-32386
Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than compressed (e.g., >800x difference). When Helm loads this specially crafted chart, memory can be exhausted causing the application to terminate. This issue has been resolved in Helm v3.17.3.
Affected Endpoints:
No affected endpoints listed.
Published Date:
4/9/2025, 11:15:37 PM
⚠️ CVSS Score:
Exploit Status:
Not ExploitedReferences:
- https://github.com/helm/helm/commit/d8ca55fc669645c10c0681d49723f4bb8c0b1ce7
- https://github.com/helm/helm/security/advisories/GHSA-4hfp-h4cw-hj8p
Recommended Action:
No proposed action available. Please refer to vendor documentation for updates.
A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.
If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below
To keep up to date follow us on the below channels.