CVE-2025-11000

LOW

Open Babel <3.1.1 - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

A vulnerability was determined in Open Babel up to 3.1.1. This affects the function PQSFormat::ReadMolecule of the file /src/formats/PQSformat.cpp. This manipulation causes null pointer dereference. The attack is restricted to local execution. The exploit has been publicly disclosed and may be utilized.

Scores

CVSS v3 3.3
EPSS 0.0003
EPSS Percentile 7.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-404 CWE-476
Status published
Products (1)
openbabel/open_babel < 3.1.1
Published Sep 26, 2025
Tracked Since Feb 18, 2026