Critical severity9.8NVD Advisory· Published Jul 21, 2023· Updated Jun 17, 2026
CVE-2022-46289
CVE-2022-46289
Description
Multiple out-of-bounds write vulnerabilities exist in the ORCA format nAtoms functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially-crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.nAtoms calculation wrap-around, leading to a small buffer allocation
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
openbabelPyPI | < 3.2.0 | 3.2.0 |
Affected products
4- Open Babel/Open Babelv5Range: 3.1.1
<=3.1.1+ 1 more
- (no CPE)range: <=3.1.1
- cpe:2.3:a:openbabel:open_babel:3.1.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- talosintelligence.com/vulnerability_reports/TALOS-2022-1665nvdExploitTechnical DescriptionThird Party AdvisoryWEB
- github.com/advisories/GHSA-rj4c-r689-cm87ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-46289ghsaADVISORY
- github.com/openbabel/openbabel/commit/b239d06eb724bb684eea0040e9d87cf07072b081ghsaWEB
- github.com/openbabel/openbabel/security/advisories/GHSA-rj4c-r689-cm87ghsaWEB
- www.talosintelligence.com/vulnerability_reports/TALOS-2022-1665nvdWEB
News mentions
0No linked articles in our index yet.