Skip to content

Commit

Permalink
Assign IDs
Browse files Browse the repository at this point in the history
  • Loading branch information
github-actions committed Dec 28, 2024
1 parent 9f880a4 commit 330d283
Show file tree
Hide file tree
Showing 31 changed files with 417 additions and 523 deletions.
2 changes: 1 addition & 1 deletion osv/malicious/.id-allocator
Original file line number Diff line number Diff line change
@@ -1 +1 @@
f6b3ca0bea800e2da43c18dcfdb3274c231869cd6dfbd5f278054579cf0ef617
9aa2287e3ea746a8ddd17dd7651572e01d4bd41d7a99221b97e5dd13f2a4a5f0
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,12 @@
"modified": "2024-12-27T07:23:35Z",
"published": "2024-12-27T07:23:35Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2024-12138",
"aliases": [
"GHSA-pfrh-cg2w-878w"
],
"summary": "Malware in binance-toolbox-nodejs",
"details": "Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"summary": "Malicious code in binance-toolbox-nodejs (npm)",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ghsa-malware (7a585655865db20c2d6f9419d9c516d93d59ac420d066bda570716d917933605)\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.\n",
"affected": [
{
"package": {
Expand All @@ -31,8 +31,7 @@
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
],
"ghsa": "https://github.com/advisories/GHSA-pfrh-cg2w-878w"
]
}
}
],
Expand All @@ -45,21 +44,21 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ghsa-malware",
"sha256": "7a585655865db20c2d6f9419d9c516d93d59ac420d066bda570716d917933605",
"import_time": "2024-12-28T00:31:37.615252187Z",
"id": "GHSA-pfrh-cg2w-878w",
"import_time": "2024-12-28T00:31:37.615252187Z",
"modified_time": "2024-12-27T07:23:35Z",
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
],
"type": "SEMVER"
}
]
],
"sha256": "7a585655865db20c2d6f9419d9c516d93d59ac420d066bda570716d917933605",
"source": "ghsa-malware"
}
]
}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,12 @@
"modified": "2024-12-27T07:23:35Z",
"published": "2024-12-27T07:23:34Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2024-12139",
"aliases": [
"GHSA-726f-26cp-5v3x"
],
"summary": "Malware in casino-luzern-easter-fronten",
"details": "Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"summary": "Malicious code in casino-luzern-easter-fronten (npm)",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ghsa-malware (e9657421a13075a125eb2aaf87ac5a9a905e170cc658ec3669ce78bcc359327b)\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.\n",
"affected": [
{
"package": {
Expand All @@ -31,8 +31,7 @@
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
],
"ghsa": "https://github.com/advisories/GHSA-726f-26cp-5v3x"
]
}
}
],
Expand All @@ -45,21 +44,21 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ghsa-malware",
"sha256": "e9657421a13075a125eb2aaf87ac5a9a905e170cc658ec3669ce78bcc359327b",
"import_time": "2024-12-28T00:31:37.606191238Z",
"id": "GHSA-726f-26cp-5v3x",
"import_time": "2024-12-28T00:31:37.606191238Z",
"modified_time": "2024-12-27T07:23:35Z",
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
],
"type": "SEMVER"
}
]
],
"sha256": "e9657421a13075a125eb2aaf87ac5a9a905e170cc658ec3669ce78bcc359327b",
"source": "ghsa-malware"
}
]
}
Expand Down

This file was deleted.

Original file line number Diff line number Diff line change
@@ -1,19 +1,47 @@
{
"modified": "2024-12-13T11:05:51Z",
"modified": "2024-12-28T00:32:00Z",
"published": "2024-12-13T11:05:51Z",
"schema_version": "1.5.0",
"id": "MAL-2024-11872",
"aliases": [
"GHSA-qp86-wjc3-623v"
],
"summary": "Malicious code in casino-luzern-easter-frontend (npm)",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (e654d8b4ac6d8ec22dafd42ce3df54953774979799c3e6fc873e879f95b97a14)\nThe OpenSSF Package Analysis project identified 'casino-luzern-easter-frontend' @ 0.0.1 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package executes one or more commands associated with malicious behavior.\n",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ghsa-malware (6e48867ff5b177606a9ae5bcb27cf273c464b77b0ac518170e08739c0f3f8f80)\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.\n\n## Source: ossf-package-analysis (e654d8b4ac6d8ec22dafd42ce3df54953774979799c3e6fc873e879f95b97a14)\nThe OpenSSF Package Analysis project identified 'casino-luzern-easter-frontend' @ 0.0.1 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package executes one or more commands associated with malicious behavior.\n",
"affected": [
{
"package": {
"ecosystem": "npm",
"name": "casino-luzern-easter-frontend"
},
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
}
],
"versions": [
"0.0.1"
]
],
"database_specific": {
"cwes": [
{
"cweId": "CWE-506",
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
]
}
}
],
"references": [
{
"type": "ADVISORY",
"url": "https://github.com/advisories/GHSA-qp86-wjc3-623v"
}
],
"credits": [
Expand All @@ -29,13 +57,30 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"sha256": "e654d8b4ac6d8ec22dafd42ce3df54953774979799c3e6fc873e879f95b97a14",
"import_time": "2024-12-16T03:20:59.369456563Z",
"modified_time": "2024-12-13T11:05:51Z",
"sha256": "e654d8b4ac6d8ec22dafd42ce3df54953774979799c3e6fc873e879f95b97a14",
"source": "ossf-package-analysis",
"versions": [
"0.0.1"
]
},
{
"source": "ghsa-malware",
"sha256": "6e48867ff5b177606a9ae5bcb27cf273c464b77b0ac518170e08739c0f3f8f80",
"import_time": "2024-12-28T00:31:37.619703655Z",
"id": "GHSA-qp86-wjc3-623v",
"modified_time": "2024-12-27T07:23:46Z",
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
}
]
}
]
}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,12 @@
"modified": "2024-12-27T07:23:46Z",
"published": "2024-12-27T07:23:36Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2024-12140",
"aliases": [
"GHSA-ph6w-8594-3q2j"
],
"summary": "Malware in centers-of-excellence",
"details": "Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"summary": "Malicious code in centers-of-excellence (npm)",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ghsa-malware (db7470e26934fe6244d0a4418e105a9007fb9f8357f17951f481193ce6a0888f)\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.\n",
"affected": [
{
"package": {
Expand All @@ -31,8 +31,7 @@
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
],
"ghsa": "https://github.com/advisories/GHSA-ph6w-8594-3q2j"
]
}
}
],
Expand All @@ -45,21 +44,21 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ghsa-malware",
"sha256": "db7470e26934fe6244d0a4418e105a9007fb9f8357f17951f481193ce6a0888f",
"import_time": "2024-12-28T00:31:37.616690271Z",
"id": "GHSA-ph6w-8594-3q2j",
"import_time": "2024-12-28T00:31:37.616690271Z",
"modified_time": "2024-12-27T07:23:46Z",
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
],
"type": "SEMVER"
}
]
],
"sha256": "db7470e26934fe6244d0a4418e105a9007fb9f8357f17951f481193ce6a0888f",
"source": "ghsa-malware"
}
]
}
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,12 @@
"modified": "2024-12-27T07:23:35Z",
"published": "2024-12-27T07:23:35Z",
"schema_version": "1.5.0",
"id": "",
"id": "MAL-2024-12141",
"aliases": [
"GHSA-wqpx-crhh-cvpw"
],
"summary": "Malware in comparison-interface",
"details": "Any computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.",
"summary": "Malicious code in comparison-interface (npm)",
"details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ghsa-malware (3d49c4851777ec7b5751332a47e71dbb222937e6cc24c1d9cf1808cd989ce800)\nAny computer that has this package installed or running should be considered fully compromised. All secrets and keys stored on that computer should be rotated immediately from a different computer. The package should be removed, but as full control of the computer may have been given to an outside entity, there is no guarantee that removing the package will remove all malicious software resulting from installing it.\n",
"affected": [
{
"package": {
Expand All @@ -31,8 +31,7 @@
"description": "The product contains code that appears to be malicious in nature.",
"name": "Embedded Malicious Code"
}
],
"ghsa": "https://github.com/advisories/GHSA-wqpx-crhh-cvpw"
]
}
}
],
Expand All @@ -45,21 +44,21 @@
"database_specific": {
"malicious-packages-origins": [
{
"source": "ghsa-malware",
"sha256": "3d49c4851777ec7b5751332a47e71dbb222937e6cc24c1d9cf1808cd989ce800",
"import_time": "2024-12-28T00:31:37.621017355Z",
"id": "GHSA-wqpx-crhh-cvpw",
"import_time": "2024-12-28T00:31:37.621017355Z",
"modified_time": "2024-12-27T07:23:35Z",
"ranges": [
{
"type": "SEMVER",
"events": [
{
"introduced": "0"
}
]
],
"type": "SEMVER"
}
]
],
"sha256": "3d49c4851777ec7b5751332a47e71dbb222937e6cc24c1d9cf1808cd989ce800",
"source": "ghsa-malware"
}
]
}
Expand Down
Loading

0 comments on commit 330d283

Please sign in to comment.