VYPR

rpm package

opensuse/ant&distro=openSUSE Leap 16.0

pkg:rpm/opensuse/ant&distro=openSUSE%20Leap%2016.0

Vulnerabilities (3)

  • CVE-2026-78254HigSep 7, 2026
    affected < 1.10.18-160000.1.1fixed 1.10.18-160000.1.1

    The ftp and scp tasks of Apache Ant can download files from a remote server. A malicious server can provide relative paths that allow it to write outside of the dedicated target directory for the download, making it possible to overwrite files of the attacker's choice using the p

  • CVE-2025-7962HigJul 21, 2025
    affected < 1.10.18-160000.1.1fixed 1.10.18-160000.1.1

    In Jakarta Mail versions prior to 2.0.2 it is possible to perform an SMTP Injection by utilizing the \r and \n UTF-8 characters to separate different messages.

  • CVE-2021-36374MedJul 14, 2021
    affected < 1.10.18-160000.1.1fixed 1.10.18-160000.1.1

    When reading a specially crafted ZIP archive, or a derived formats, an Apache Ant build can be made to allocate large amounts of memory that leads to an out of memory error, even for small inputs. This can be used to disrupt builds using Apache Ant. Commonly used derived formats