Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
htslib vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2020-36403
HTSlib up to and including 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).
Htslib Htslib
4.7
CVSSv3
CVE-2018-14329
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.
Htslib Htslib 1.8
7.5
CVSSv3
CVE-2018-13843
An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's position is that the "failure to free memory" can be fixed in applications that use the HTSlib library (such as test/test_bgzf.c in the original re...
Htslib Htslib 1.8
7.5
CVSSv3
CVE-2018-13844
An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the assertion that this vulnerability exists in the test harness and HTSlib users would be aware of the need to destruct this object returned by fai_load() in thei...
Htslib Htslib 1.8
9.8
CVSSv3
CVE-2018-13845
An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in sam.c.
Htslib Htslib 1.8
9.8
CVSSv3
CVE-2017-1000206
samtools htslib library version 1.4.0 and previous versions is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
Htslib Htslib
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
hardcoded
arbitrary code
CVE-2024-2404
CVE-2024-21111
CVE-2024-28627
CVE-2024-4073
information disclosure
CVE-2024-32780
CVE-2024-4040
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started