BWA (aka Burrow-Wheeler Aligner) 0.7.17 r1198 has a Buffer Overflow via a long prefix that is mishandled in bnsfasta2bntseq and bnsdump at btnseq.c.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11371.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "0.7.17-r1198" } ] } ]