MAL-2024-2605

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/withdrawn/npm/leveldb-decryptor/MAL-2024-2605.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-2605
Withdrawn
2024-07-01T05:16:00Z
Published
2024-06-25T12:20:49Z
Modified
2024-07-01T05:16:00Z
Summary
Malicious code in leveldb-decryptor (npm)
Details

False positive caused by problematic ingestion.

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "61d4c10763f0169cca0eed82889575c61b1a603abe870e22adc4102eaba556f9",
            "modified_time": "2024-06-25T12:20:49Z",
            "versions": [
                "2.4.1",
                "2.3.9",
                "1.5.9",
                "1.7.3",
                "1.7.5",
                "2.4.16",
                "2.4.15",
                "1.6.1",
                "1.6.4",
                "2.4.18",
                "1.5.4",
                "1.7.6",
                "1.4.7",
                "1.5.6",
                "1.6.3",
                "1.4.8",
                "1.5.2",
                "2.4.17",
                "1.6.0",
                "1.5.8",
                "1.6.5",
                "1.4.6",
                "1.6.2"
            ],
            "source": "reversing-labs",
            "id": "RLMA-2024-00121",
            "import_time": "2024-06-28T02:41:27.330520093Z"
        }
    ]
}
References

Affected packages

npm / leveldb-decryptor

Package

Affected ranges

Affected versions

1.*
1.4.6
1.4.7
1.4.8
1.5.2
1.5.4
1.5.6
1.5.8
1.5.9
1.6.0
1.6.1
1.6.2
1.6.3
1.6.4
1.6.5
1.7.3
1.7.5
1.7.6
2.*
2.3.9
2.4.1
2.4.15
2.4.16
2.4.17
2.4.18

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/withdrawn/npm/leveldb-decryptor/MAL-2024-2605.json"