Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-35206

Опубликовано: 09 апр. 2026
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

Helm is a package manager for Charts for Kubernetes. In Helm versions <=3.20.1 and <=4.1.3, a specially crafted Chart will cause helm pull --untar [chart URL | repo/chartname] to write the Chart's contents to the immediate output directory (as defaulted to the current working directory; or as given by the --destination and --untardir flags), rather than the expected output directory suffixed by the chart's name. This vulnerability is fixed in 3.20.2 and 4.1.4.

A flaw was found in Helm, a package manager for Kubernetes. A remote attacker could exploit this vulnerability by providing a specially crafted Chart to the helm pull --untar command. This would cause the Chart's contents to be written to an unintended directory, potentially overwriting existing files or placing malicious files in an accessible location, leading to data integrity and availability issues.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Multicluster Engine for Kubernetesmulticluster-engine/addon-manager-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/hypershift-addon-rhel9-operatorUnder investigation
Multicluster Engine for Kubernetesmulticluster-engine/managedcluster-import-controller-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/multicloud-manager-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/placement-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/registration-operator-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/registration-rhel9Under investigation
Multicluster Engine for Kubernetesmulticluster-engine/work-rhel9Under investigation
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/acm-governance-policy-addon-controller-rhel9Under investigation
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/multiclusterhub-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2457151github.com/helm/helm: Helm: Files written to unexpected directory via specially crafted Chart

EPSS

Процентиль: 10%
0.00199
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.4
nvd
4 месяца назад

Helm is a package manager for Charts for Kubernetes. In Helm versions <=3.20.1 and <=4.1.3, a specially crafted Chart will cause helm pull --untar [chart URL | repo/chartname] to write the Chart's contents to the immediate output directory (as defaulted to the current working directory; or as given by the --destination and --untardir flags), rather than the expected output directory suffixed by the chart's name. This vulnerability is fixed in 3.20.2 and 4.1.4.

msrc
4 месяца назад

Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment

CVSS3: 4.4
debian
4 месяца назад

Helm is a package manager for Charts for Kubernetes. In Helm versions ...

github
4 месяца назад

Helm Chart extraction output directory collapse via `Chart.yaml` name dot-segment

CVSS3: 5.1
fstec
4 месяца назад

Уязвимость пакетного менеджера для Kubernetes Helm, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 10%
0.00199
Низкий

4.4 Medium

CVSS3