MAL-2024-6997

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/okra/MAL-2024-6997.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-6997
Published
2024-06-25T13:51:55Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in okra (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "063dc45b43ad935c4e68e0d84fe105d36d5ff36a51cc71b539ba7d8b917a5ff3",
            "import_time": "2024-06-28T02:52:43.571833183Z",
            "versions": [
                "16",
                "1.900",
                "90002.0",
                "0.900.0",
                "8.0.0"
            ],
            "id": "RLMA-2024-05803",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:51:55Z"
        },
        {
            "sha256": "cb87626be4fed5904b38f40c6e6ab0d8341ba6622d1d5dac54d8d09e749a0703",
            "import_time": "2024-10-24T01:01:22.324890586Z",
            "id": "RLUA-2024-10324",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T15:04:29Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / okra

Package

Name
okra
Purl
pkg:gem/okra

Affected ranges

Affected versions

0.*

0.900.0

1.*

1.900

8.*

8.0.0

Other

16

90002.*

90002.0