Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
htslib vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2017-1000206
samtools htslib library version 1.4.0 and previous versions is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
Htslib Htslib
6.8
CVSSv2
CVE-2020-36403
HTSlib up to and including 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).
Htslib Htslib
5
CVSSv2
CVE-2018-13843
An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's position is that the "failure to free memory" can be fixed in applications that use the HTSlib library (such as test/test_bgzf.c in the original re...
Htslib Htslib 1.8
5
CVSSv2
CVE-2018-13844
An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the assertion that this vulnerability exists in the test harness and HTSlib users would be aware of the need to destruct this object returned by fai_load() in thei...
Htslib Htslib 1.8
7.5
CVSSv2
CVE-2018-13845
An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in sam.c.
Htslib Htslib 1.8
3.3
CVSSv2
CVE-2018-14329
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.
Htslib Htslib 1.8
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-38002
CVE-2006-4304
CVE-2024-4336
CVE-2024-33437
CVE-2024-4340
CVE-2024-27956
privilege
insecure direct object reference
XSS
item search icon">CVE-2024-25938
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started