MAL-2024-7006

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/rubygems/qubitsdk/MAL-2024-7006.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2024-7006
Published
2024-06-25T13:44:42Z
Modified
2024-10-24T01:02:00Z
Summary
Malicious code in QubitSDK (RubyGems)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "67c23ff0c29ceee01542e1ffa7f710e3b7ae658b4be16b778230ac5353718231",
            "import_time": "2024-06-28T02:51:17.432691721Z",
            "versions": [
                "2.0.7",
                "2.0.9",
                "3.0.2",
                "3.0.0",
                "2.0.8",
                "2.0.6",
                "8.0.0"
            ],
            "id": "RLMA-2024-05079",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:44:42Z"
        },
        {
            "sha256": "5b81f48c63d977aa7fcc995e2efa12d935011c5f6e85fcf07f72033f035c15c3",
            "import_time": "2024-10-24T01:00:29.919656542Z",
            "id": "RLUA-2024-09598",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:54:49Z"
        }
    ]
}
References
Credits

Affected packages

RubyGems / QubitSDK

Package

Name
QubitSDK
Purl
pkg:gem/QubitSDK

Affected ranges

Affected versions

2.*

2.0.6
2.0.7
2.0.8
2.0.9

3.*

3.0.0
3.0.2

8.*

8.0.0