Description
SAMtools is a program for reading, manipulating and writing bioinformatics file formats. Starting in version 1.17, in the cram-size command, used to write information about how well CRAM files are compressed, a check to see if the `cram_decode_compression_header()` was missing. If the function returned an error, this could lead to a NULL pointer dereference. Exploiting this bug causes a NULL pointer dereference. Typically this will cause the program to crash. Versions 1.23.1, 1.22.2 and 1.21.1 include fixes for this issue. There is no workaround for this issue.
INFO
Published Date :
2026-03-18T20:34:00.846Z
Last Modified :
2026-03-19T16:14:59.386Z
Source :
GitHub_M
AFFECTED PRODUCTS
The following products are affected by CVE-2026-31973 vulnerability.
| Vendors | Products |
|---|---|
| Samtools |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-31973.