{"id":"CVE-2025-10997","aliases":["GHSA-8wq6-qh76-wpv9","PYSEC-2026-2778"],"url":"https://o3.security/vulnerability/CVE-2025-10997","summary":"Open Babel chemkinformat.cpp CheckSpecies heap-based overflow","details":"A flaw has been found in Open Babel up to 3.1.1. Impacted is the function ChemKinFormat::CheckSpecies of the file /src/formats/chemkinformat.cpp. Executing manipulation can lead to heap-based buffer overflow. The attack can only be executed locally. The exploit has been published and may be used.","published":"2025-09-26T02:32:09.748Z","modified":"2026-08-12T03:51:12.820717480Z","cvss":null,"epss":{"score":0.0028,"percentile":0.2017,"asOf":"2026-09-07"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"openbabel","fixedVersion":"3.2.0"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/10xxx/CVE-2025-10997.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-10997"},{"type":"ADVISORY","url":"https://vuldb.com/?id.325925"},{"type":"ADVISORY","url":"https://vuldb.com/?submit.654062"},{"type":"REPORT","url":"https://github.com/openbabel/openbabel/issues/2830"},{"type":"REPORT","url":"https://vuldb.com/?ctiid.325925"},{"type":"EVIDENCE","url":"https://github.com/user-attachments/files/22318543/poc.zip"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:12.820717480Z"}}