CVE-2019-1010127

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
25/07/2019
Last modified:
30/07/2019

Description

VCFTools vcftools prior to version 0.1.15 is affected by: Use-after-free. The impact is: Denial of Service or possibly other impact (eg. code execution or information disclosure). The component is: The header::add_FILTER_descriptor method in header.cpp. The attack vector is: The victim must open a specially crafted VCF file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vcftools_project:vcftools:*:*:*:*:*:*:*:* 0.1.15 (excluding)