Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
htslib vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2020-36403
HTSlib up to and including 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).
Htslib Htslib
9.8
CVSSv3
CVE-2017-1000206
samtools htslib library version 1.4.0 and previous versions is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
Htslib Htslib
7.5
CVSSv3
CVE-2018-13843
An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's position is that the "failure to free memory" can be fixed in applications that use the HTSlib library (such as test/test_bgzf.c in the original re...
Htslib Htslib 1.8
7.5
CVSSv3
CVE-2018-13844
An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the assertion that this vulnerability exists in the test harness and HTSlib users would be aware of the need to destruct this object returned by fai_load() in thei...
Htslib Htslib 1.8
4.7
CVSSv3
CVE-2018-14329
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.
Htslib Htslib 1.8
9.8
CVSSv3
CVE-2018-13845
An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in sam.c.
Htslib Htslib 1.8
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32744
privilege escalation
CVE-2024-30253
CVE-2024-3914
cross-site scripting
CVE-2024-31497
CVE-2024-3400
CVE-2024-32341
hardcoded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started