Allocation of Resources Without Limits or Throttling The advisory has been revoked - it doesn't affect any version of package teleport  (opens in a new tab)


Threat Intelligence

EPSS
0.43% (35th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-CHAINGUARDLATEST-TELEPORT-9690883
  • published14 Apr 2025
  • disclosed9 Apr 2025

Introduced: 9 Apr 2025

CVE-2025-32386  (opens in a new tab)
CWE-770  (opens in a new tab)
CWE-789  (opens in a new tab)

Amendment

The Chainguard security team deemed this advisory irrelevant for Chainguard:latest.

NVD Description

Note: Versions mentioned in the description apply only to the upstream teleport package and not the teleport package as distributed by Chainguard.

Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than compressed (e.g., >800x difference). When Helm loads this specially crafted chart, memory can be exhausted causing the application to terminate. This issue has been resolved in Helm v3.17.3.