VYPR

apk package

wolfi/no-docs-check

pkg:apk/wolfi/no-docs-check

Vulnerabilities (64)

  • CVE-2025-32386MedApr 9, 2025
    affected < 0.0.13-r0fixed 0.0.13-r0

    Helm is a tool for managing Charts. A chart archive file can be crafted in a manner where it expands to be significantly larger uncompressed than compressed (e.g., >800x difference). When Helm loads this specially crafted chart, memory can be exhausted causing the application to

  • CVE-2025-22871CriApr 8, 2025
    affected < 0.0.10-r1fixed 0.0.10-r1

    The net/http package improperly accepts a bare LF as a line terminator in chunked data chunk-size lines. This can permit request smuggling if a net/http server is used in conjunction with a server that incorrectly accepts a bare LF as part of a chunk-ext.

  • CVE-2025-22869HigFeb 26, 2025
    affected < 0.0.7-r0fixed 0.0.7-r0

    SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.

  • CVE-2025-22868HigFeb 26, 2025
    affected < 0.0.7-r0fixed 0.0.7-r0

    An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.

Page 4 of 4