Out-of-Bounds Write Vulnerability in Open Babel by Open Babel
CVE-2022-46290
9.8CRITICAL
What is CVE-2022-46290?
Open Babel includes multiple out-of-bounds write vulnerabilities related to its handling of the ORCA format nAtoms functionality. By providing a specially-crafted malformed file, an attacker could trigger arbitrary code execution. This issue arises from a loop that stores coordinates without proper index checking against nAtoms, allowing exploitation through the manipulation of input files.
Affected Version(s)
Open Babel 3.1.1
Open Babel master commit 530dbfa3
