{"id":"MAL-2024-5845","summary":"Malicious code in qtcolor (PyPI)","details":"\n---\n_-= Per source details. Do not edit below this line.=-_\n","aliases":["SNYK-PYTHON-QTCOLOR-6129556"],"modified":"2024-10-24T01:01:59Z","published":"2024-06-25T13:41:16Z","database_specific":{"malicious-packages-origins":[{"modified_time":"2024-06-25T13:41:16Z","sha256":"282e22f73be7b4ac6a4fb7b665ef8206877c2c7e05e8ea1b08d93635ade8e18d","source":"reversing-labs","versions":["4.2","2.3","4.3"],"id":"RLMA-2024-04646","import_time":"2024-06-28T02:50:24.74736991Z"},{"id":"RLUA-2024-09100","import_time":"2024-10-24T01:00:00.307292636Z","modified_time":"2024-10-16T14:49:39Z","sha256":"e206555d348d4ff88426761c5a48e4295417eee552fa2a7560efbf4616a63897","source":"reversing-labs"}]},"references":[{"type":"ARTICLE","url":"https://www.welivesecurity.com/en/eset-research/pernicious-potpourri-python-packages-pypi/"},{"type":"ADVISORY","url":"https://security.snyk.io/vuln/SNYK-PYTHON-QTCOLOR-6129556"}],"affected":[{"package":{"name":"qtcolor","ecosystem":"PyPI","purl":"pkg:pypi/qtcolor"},"versions":["4.2","2.3","4.3"],"database_specific":{"source":"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/pypi/qtcolor/MAL-2024-5845.json"}}],"schema_version":"1.7.3","credits":[{"name":"ReversingLabs","contact":["https://www.reversinglabs.com"],"type":"FINDER"}]}