CVE-2025-6069
EUVD-2025-1849617.06.2025, 14:15
The html.parser.HTMLParser class had worse-case quadratic complexity when processing certain crafted malformed inputs potentially leading to amplified denial-of-service.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| python | cpython | 𝑥 < 3.9.24 | CNA |
| python | cpython | 3.10.0 ≤ 𝑥 < 3.10.19 | CNA |
| python | cpython | 3.11.0 ≤ 𝑥 < 3.11.14 | CNA |
| python | cpython | 3.12.0 ≤ 𝑥 < 3.12.12 | CNA |
| python | cpython | 3.13.0 ≤ 𝑥 < 3.13.6 | CNA |
Debian Releases
Debian Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| jython |
| ||||||||||||
| pypy3 |
| ||||||||||||
| python2.7 |
| ||||||||||||
| python3.11 |
| ||||||||||||
| python3.13 |
| ||||||||||||
| python3.9 |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| jython |
| ||||||||||||||||||
| python2.7 |
| ||||||||||||||||||
| python3.11 |
| ||||||||||||||||||
| python3.12 |
| ||||||||||||||||||
| python3.13 |
| ||||||||||||||||||
| python3.9 |
| ||||||||||||||||||
| python3.4 |
| ||||||||||||||||||
| python3.5 |
| ||||||||||||||||||
| python3.6 |
| ||||||||||||||||||
| python3.7 |
| ||||||||||||||||||
| python3.8 |
| ||||||||||||||||||
| python3.10 |
| ||||||||||||||||||
| python3.14 |
|
Common Weakness Enumeration
References