MAL-2024-5213

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/http3-client/MAL-2024-5213.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-5213
Published
2024-06-25T13:36:01Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in http3-client (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "modified_time": "2024-06-25T13:36:01Z",
            "versions": [
                "1.0.19",
                "1.0.20",
                "1.0.17",
                "1.0.21",
                "1.0.18"
            ],
            "sha256": "d21d71628531fb6249ae1ebd3d2934b32e445102999a2db5514f5e525168c9d5",
            "id": "RLMA-2024-03995",
            "source": "reversing-labs",
            "import_time": "2024-06-28T02:49:07.582794765Z"
        },
        {
            "modified_time": "2024-10-16T14:42:02Z",
            "versions": [
                "1.0.0.1",
                "1.0.7"
            ],
            "sha256": "b854676b9425dbdcdb6f511b537126d60cc05aef97a478ac1540e41daa9c5735",
            "id": "RLUA-2024-08356",
            "source": "reversing-labs",
            "import_time": "2024-10-24T00:59:17.241845436Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / http3-client

Package

Affected ranges

Affected versions

1.*
1.0.0.1
1.0.7
1.0.17
1.0.18
1.0.19
1.0.20
1.0.21

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/http3-client/MAL-2024-5213.json"