CVE-2022-21126

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/11/2022
Last modified:
01/12/2022

Description

The package com.github.samtools:htsjdk before 3.0.1 are vulnerable to Creation of Temporary File in Directory with Insecure Permissions due to the createTempDir() function in util/IOUtil.java not checking for the existence of the temporary directory before attempting to create it.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:samtools:htsjdk:*:*:*:*:*:*:*:* 3.0.1 (excluding)