Lucene search

K

Htslib Security Vulnerabilities

cve
cve

CVE-2018-13843

An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's position is that the "failure to free memory" can be fixed in applications that use the HTSlib library (such as test/test_bgzf.c in the original report) and is not a library...

7.5CVSS

7.4AI Score

0.001EPSS

2018-07-10 06:29 PM
21
cve
cve

CVE-2018-13844

An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the assertion that this vulnerability exists in the test harness and HTSlib users would be aware of the need to destruct this object returned by fai_load() in their own...

7.5CVSS

7.4AI Score

0.001EPSS

2018-07-10 06:29 PM
27
2
cve
cve

CVE-2020-36403

HTSlib through 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and...

8.8CVSS

8.6AI Score

0.004EPSS

2021-07-01 03:15 AM
113
1
cve
cve

CVE-2017-1000206

samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code...

9.8CVSS

9.8AI Score

0.003EPSS

2022-10-03 04:23 PM
29
cve
cve

CVE-2018-14329

In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink...

4.7CVSS

4.6AI Score

0.0004EPSS

2018-07-17 02:29 AM
18
cve
cve

CVE-2018-13845

An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in...

9.8CVSS

9.5AI Score

0.002EPSS

2018-07-10 06:29 PM
20