Critical severity9.8NVD Advisory· Published Jul 21, 2023· Updated Jun 17, 2026
CVE-2022-46295
CVE-2022-46295
Description
Multiple out-of-bounds write vulnerabilities exist in the translationVectors parsing functionality in multiple supported formats of Open Babel 3.1.1 and master commit 530dbfa3. A specially-crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.This vulnerability affects the Gaussian file format
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
openbabelPyPI | < 3.2.0 | 3.2.0 |
Affected products
5cpe:2.3:a:openbabel:open_babel:3.1.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:openbabel:open_babel:3.1.1:*:*:*:*:*:*:*
- (no CPE)range: <=3.1.1
- osv-coords2 versionspkg:rpm/opensuse/openbabel&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/openbabel&distro=openSUSE%20Tumbleweed
< 3.2.0-bp160.1.1+ 1 more
- (no CPE)range: < 3.2.0-bp160.1.1
- (no CPE)range: < 3.2.0-1.1
- Open Babel/Open Babelv5Range: 3.1.1
Patches
Vulnerability mechanics
References
6- talosintelligence.com/vulnerability_reports/TALOS-2022-1666nvdExploitTechnical DescriptionThird Party AdvisoryWEB
- github.com/advisories/GHSA-f8h2-c479-vqxfghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-46295ghsaADVISORY
- github.com/openbabel/openbabel/commit/40e852138f21d586b7ccdce6329e7b23a87168bbghsaWEB
- github.com/openbabel/openbabel/security/advisories/GHSA-f8h2-c479-vqxfghsaWEB
- www.talosintelligence.com/vulnerability_reports/TALOS-2022-1666nvdWEB
News mentions
0No linked articles in our index yet.