/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2021-36373

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2021-36373

Severity

5.5

Medium

CVSS V3

Description

When reading a specially crafted TAR archive an Apache Ant build can be made to allocate large amounts of memory that finally leads to an out of memory error, even for small inputs. This can be used to disrupt builds using Apache Ant. Apache Ant prior to 1.9.16 and 1.10.11 were affected.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing