AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-36374

MEDIUM · CVSS 5.5 EPSS 2.64%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-07-14 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-36374
Severity
MEDIUM
CVSS
5.5
EPSS
2.64%
Office Apache

Original NVD Description

When reading a specially crafted ZIP archive, or a derived formats, an Apache Ant build can be made to allocate large amounts of memory that leads to an out of memory error, even for small inputs. This can be used to disrupt builds using Apache Ant. Commonly used derived formats from ZIP archives are for instance JAR files and many office files. Apache Ant prior to 1.9.16 and 1.10.11 were affected.