samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
{
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "htslib-test",
"binary_version": "1.2.1-2ubuntu1+esm1"
},
{
"binary_name": "libhts1",
"binary_version": "1.2.1-2ubuntu1+esm1"
},
{
"binary_name": "tabix",
"binary_version": "1.2.1-2ubuntu1+esm1"
}
]
}