๐Ÿ” CVE Alert

CVE-2025-13837

UNKNOWN 0.0

Out-of-memory when loading Plist

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

When loading a plist file, the plistlib module reads data in size specified by the file itself, meaning a malicious file can cause OOM and DoS issues

Vendor python software foundation
Product cpython
Published Dec 1, 2025
Last Updated Mar 3, 2026
Stay Ahead of the Next One

Get instant alerts for python software foundation cpython

Be the first to know when new unknown vulnerabilities affecting python software foundation cpython are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Python Software Foundation / CPython
0 < 3.10.20 3.11.0 < 3.11.15 3.12.0 < 3.12.13 3.13.0 < 3.13.10 3.14.0 < 3.14.1 3.15.0a1 < 3.15.0a3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/python/cpython/pull/119343 github.com: https://github.com/python/cpython/issues/119342 github.com: https://github.com/python/cpython/commit/694922cf40aa3a28f898b5f5ee08b71b4922df70 github.com: https://github.com/python/cpython/commit/71fa8eb8233b37f16c88b6e3e583b461b205d1ba github.com: https://github.com/python/cpython/commit/b64441e4852383645af5b435411a6f849dd1b4cb mail.python.org: https://mail.python.org/archives/list/[email protected]/thread/2X5IBCJXRQAZ5PSERLHMSJFBHFR3QM2C/ github.com: https://github.com/python/cpython/commit/5a8b19677d818fb41ee55f310233772e15aa1a2b github.com: https://github.com/python/cpython/commit/568342cfc8f002d9a15f30238f26b9d2e0e79036 github.com: https://github.com/python/cpython/commit/cefee7d118a26ef6cd43db59bb9d98ca9a331111