PT-2019-5325 · Bwa+1 · Bwa+1

·

CVE-2019-10269

·

Published

2019-03-29

·

Updated

2025-12-12

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions BWA versions prior to 2019-01-23
Description The issue is related to a stack-based buffer overflow in the bns restore function in bntseq.c via a long sequence name in a .alt file. This can potentially allow a remote attacker to cause a denial of service or execute arbitrary code.
Recommendations For versions prior to 2019-01-23, consider updating to a version released after 2019-01-23 to resolve the issue. As a temporary workaround, consider restricting the use of long sequence names in .alt files to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02394
CVE-2019-10269
OESA-2025-2796
OESA-2025-2797
OESA-2025-2798
OESA-2025-2799
USN-4087-1
USN-4857-1

Affected Products

Bwa
Ubuntu