samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential arbitrary code execution
{
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
"binaries": [
{
"binary_version": "1.2.1-2ubuntu1+esm1",
"binary_name": "htslib-test"
},
{
"binary_version": "1.2.1-2ubuntu1+esm1",
"binary_name": "libhts-dev"
},
{
"binary_version": "1.2.1-2ubuntu1+esm1",
"binary_name": "libhts1"
},
{
"binary_version": "1.2.1-2ubuntu1+esm1",
"binary_name": "tabix"
}
]
}