First published: Sat Apr 20 2019(Updated: )
BWA (aka Burrow-Wheeler Aligner) 0.7.17 r1198 has a Buffer Overflow via a long prefix that is mishandled in bns_fasta2bntseq and bns_dump at btnseq.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Burrow-Wheeler Aligner | =0.7.17-r1198 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11371 has a high severity due to the potential for a buffer overflow vulnerability in Burrow-Wheeler Aligner.
To fix CVE-2019-11371, upgrade to a version of Burrow-Wheeler Aligner that has patched the vulnerability.
CVE-2019-11371 affects Burrow-Wheeler Aligner version 0.7.17 r1198.
The potential impacts of CVE-2019-11371 include application crashes or arbitrary code execution due to the buffer overflow.
You can identify if your system is vulnerable to CVE-2019-11371 by checking if you are running Burrow-Wheeler Aligner version 0.7.17 r1198.