MAL-2024-4979

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/colorscmd/MAL-2024-4979.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2024-4979
Published
2024-06-25T13:34:07Z
Modified
2024-10-24T01:01:58Z
Summary
Malicious code in colorscmd (PyPI)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "sha256": "7a9f6bb10ca1f922caee5e442fd2894748483f5437baa03e0fb304865fa14ee3",
            "import_time": "2024-06-28T02:48:40.308492783Z",
            "versions": [
                "1.7.7",
                "0.1.0",
                "1.7.1"
            ],
            "id": "RLMA-2024-03759",
            "source": "reversing-labs",
            "modified_time": "2024-06-25T13:34:07Z"
        },
        {
            "sha256": "7e222abfab3e45f366c85aa4930b6be1523a7503bc54cf4e523c55d69cec2c21",
            "import_time": "2024-10-24T00:59:00.898526082Z",
            "versions": [
                "1.7.2",
                "1.7.5"
            ],
            "id": "RLUA-2024-08051",
            "source": "reversing-labs",
            "modified_time": "2024-10-16T14:38:48Z"
        }
    ]
}
References
Credits

Affected packages

PyPI / colorscmd

Package

Affected ranges

Affected versions

0.*

0.1.0

1.*

1.7.1
1.7.2
1.7.5
1.7.7