HTSlib是samtools开源的一个C语言的库文件。 HTSlib 1.23.1之前版本、1.22.2之前版本和1.21.1之前版本存在缓冲区错误漏洞,该漏洞源于cram_byte_array_stop_decode_char函数存在差一错误,可能导致堆缓冲区溢出。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-31962 | HTSlib CRAM reader has heap buffer overflow due to improper validation of input | |
| CVE-2026-31964 | HTSlib CRAM decoder has a NULL Pointer Dereference | |
| CVE-2026-31963 | HTSlib CRAM reader has heap buffer overflow due to improper validation of input | |
| CVE-2026-31965 | HTSlib CRAM reader has out-of-bounds reads due to improper validation of input | |
| CVE-2026-31966 | HTSlib CRAM reader has out-of-bounds read due to improper validation of input | |
| CVE-2026-31967 | HTSlib CRAM reader has out-of-bounds read due to improper validation of input | |
| CVE-2026-31968 | HTSlib CRAM decoder vulnerable to buffer overflow | |
| CVE-2026-31971 | HTSlib CRAM decoder vulnerable to buffer overflow | |
| CVE-2026-31970 | HTSlib BGZF index file reader has a heap buffer overflow | |
| CVE-2026-31973 | NULL pointer dereference in samtools cram-size | |
| CVE-2026-31972 | samtools mpileup has use-after-free leading to an invalid read |
No comments yet