MAL-2025-4216

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/easyascii/MAL-2025-4216.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2025-4216
Published
2025-05-22T12:33:32Z
Modified
2025-05-22T12:33:32Z
Summary
Malicious code in easyascii (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "modified_time": "2025-05-22T12:33:32Z",
            "source": "reversing-labs",
            "import_time": "2025-05-22T14:06:35.385029001Z",
            "id": "RLMA-2025-02570",
            "versions": [
                "2.4.1",
                "2.4.5",
                "3.2.1",
                "3.2.2",
                "3.2.3",
                "3.2.5",
                "3.2.6",
                "3.2.8",
                "3.2.9",
                "3.3.1",
                "3.3.2",
                "3.3.5",
                "3.3.7",
                "3.3.8",
                "3.3.9",
                "3.4.0",
                "3.4.1"
            ],
            "sha256": "c2d915b89d9bedded4c48bb8d6c961320e161bc1f2553ac4a87c11ee3ae118fa"
        }
    ]
}
References
Credits

Affected packages

PyPI / easyascii

Package

Affected ranges

Affected versions

2.*
2.4.1
2.4.5
3.*
3.2.1
3.2.2
3.2.3
3.2.5
3.2.6
3.2.8
3.2.9
3.3.1
3.3.2
3.3.5
3.3.7
3.3.8
3.3.9
3.4.0
3.4.1

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/easyascii/MAL-2025-4216.json"