Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-10670 | Helm Allows A Specially Crafted Chart Archive To Cause Out Of Memory Termination |
Github GHSA |
GHSA-4hfp-h4cw-hj8p | Helm Allows A Specially Crafted Chart Archive To Cause Out Of Memory Termination |
Wed, 03 Sep 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:helm:helm:*:*:*:*:*:*:*:* |
Thu, 10 Apr 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Thu, 10 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Apr 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than compressed (e.g., >800x difference). When Helm loads this specially crafted chart, memory can be exhausted causing the application to terminate. This issue has been resolved in Helm v3.17.3. | |
| Title | Helm Allows A Specially Crafted Chart Archive To Cause Out Of Memory Termination | |
| Weaknesses | CWE-770 CWE-789 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-10T13:39:53.113Z
Reserved: 2025-04-06T19:46:02.462Z
Link: CVE-2025-32386
Updated: 2025-04-10T13:39:48.336Z
Status : Analyzed
Published: 2025-04-09T23:15:37.750
Modified: 2025-09-03T17:03:12.177
Link: CVE-2025-32386
OpenCVE Enrichment
Updated: 2025-07-12T16:01:46Z
EUVD
Github GHSA