Multiple out-of-bounds write vulnerabilities exist in the translationVectors parsing functionality in multiple supported formats of Open Babel 3.1.1 and master commit 530dbfa3. A specially-crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.This vulnerability affects the MSI file format
Advisories
Source ID Title
EUVD EUVD EUVD-2022-49109 Multiple out-of-bounds write vulnerabilities exist in the translationVectors parsing functionality in multiple supported formats of Open Babel 3.1.1 and master commit 530dbfa3. A specially-crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.This vulnerability affects the MSI file format
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 24 Oct 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published:

Updated: 2024-10-24T18:03:34.508Z

Reserved: 2022-11-28T20:44:13.209Z

Link: CVE-2022-46291

cve-icon Vulnrichment

Updated: 2024-08-03T14:31:46.324Z

cve-icon NVD

Status : Modified

Published: 2023-07-21T21:15:10.917

Modified: 2024-11-21T07:30:19.330

Link: CVE-2022-46291

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.