An out-of-bounds write vulnerability exists in the PQS format coord_file functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
{ "binaries": [ { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "libopenbabel-dev" }, { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "libopenbabel7" }, { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "openbabel" }, { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "openbabel-gui" }, { "binary_version": "3.1.1+dfsg-6ubuntu5", "binary_name": "python3-openbabel" } ] }
{ "binaries": [ { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "libopenbabel-dev" }, { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "libopenbabel7" }, { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "openbabel" }, { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "openbabel-gui" }, { "binary_version": "3.1.1+dfsg-9ubuntu5", "binary_name": "python3-openbabel" } ] }
{ "binaries": [ { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "libopenbabel-dev" }, { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "libopenbabel7" }, { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "openbabel" }, { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "openbabel-gui" }, { "binary_version": "3.1.1+dfsg-11ubuntu3", "binary_name": "python3-openbabel" } ] }
{ "binaries": [ { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "libopenbabel-dev" }, { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "libopenbabel4v5" }, { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "openbabel" }, { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "openbabel-gui" }, { "binary_version": "2.3.2+dfsg-2.2build1", "binary_name": "python-openbabel" } ] }
{ "binaries": [ { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "libopenbabel-dev" }, { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "libopenbabel4v5" }, { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "openbabel" }, { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "openbabel-gui" }, { "binary_version": "2.3.2+dfsg-3build1", "binary_name": "python-openbabel" } ] }
{ "binaries": [ { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "libchemistry-openbabel-perl" }, { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "libopenbabel-dev" }, { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "libopenbabel6" }, { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "openbabel" }, { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "openbabel-gui" }, { "binary_version": "3.0.0+dfsg-3ubuntu3", "binary_name": "python3-openbabel" } ] }