threat
engine
.sh
Back
·
··:··
Home
/
Product
/
htslib
Product
htslib
16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-31971
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.1
HIGH
CVE-2026-31970
< 1.21
HTSlib is a library for reading and writing bioinformatics file formats. GZI files are used to index block-compressed GZIP [BGZF]
8.1
HIGH
CVE-2026-31969
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.1
HIGH
CVE-2026-31968
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.1
HIGH
CVE-2026-31967
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
9.1
CRITICAL
CVE-2026-31966
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
9.1
CRITICAL
CVE-2026-31965
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.2
HIGH
CVE-2026-31964
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
7.5
HIGH
CVE-2026-31963
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.1
HIGH
CVE-2026-31962
< 1.21.1
HTSlib is a library for reading and writing bioinformatics file formats. CRAM is a compressed format which stores DNA sequence ali
8.8
HIGH
CVE-2020-36403
<= 1.10.2
HTSlib through 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read).
8.8
HIGH
CVE-2018-14329
all versions
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink attack.
4.7
MEDIUM
CVE-2018-13845
all versions
An issue has been found in HTSlib 1.8. It is a buffer over-read in sam_parse1 in sam.c.
9.8
CRITICAL
CVE-2018-13844
all versions
An issue has been found in HTSlib 1.8. It is a memory leak in fai_read in faidx.c. NOTE: This has been disputed with the assertion
7.5
HIGH
CVE-2018-13843
all versions
An issue has been found in HTSlib 1.8. It is a memory leak in bgzf_getline in bgzf.c. NOTE: the software maintainer's position is
7.5
HIGH
CVE-2017-1000206
<= 1.4.0
samtools htslib library version 1.4.0 and earlier is vulnerable to buffer overflow in the CRAM rANS codec resulting in potential a
9.8
CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin