PT-2023-4405 · Unknown+1 · Open Babel+1

·

CVE-2022-43467

·

Publicado

2023-07-21

·

Atualizado

2026-07-13

CVSS v3.1

10

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Open Babel versions 3.1.1 and earlier
Description The issue is related to an out-of-bounds write vulnerability in the PQS format coord file functionality. This can be exploited by providing a specially crafted malformed file, potentially leading to arbitrary code execution. An attacker can trigger this vulnerability by providing a malicious file.
Recommendations For Open Babel version 3.1.1, consider avoiding the use of the PQS format coord file functionality until a patch is available. As a temporary workaround, restrict the handling of malformed files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2023-04750
CVE-2022-43467
GHSA-F29H-2H58-48R7
GHSA-VX29-RWGR-834P
OPENSUSE-SU-2026:10936-1
OPENSUSE-SU-2026:21190-1
PYSEC-2026-2779

Produtos afetados

Debian
Open Babel