samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-1000206.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "1.4.0" } ] } ]