From 1cd277bc7fa2ad66e896d92f98127ef3964d4e48 Mon Sep 17 00:00:00 2001 From: github-actions Date: Sat, 23 Nov 2024 16:39:10 +0000 Subject: [PATCH] Assign IDs --- osv/malicious/.id-allocator | 2 +- ...analysis-ff3c43a5c6e1f7ce.json => MAL-2024-10894.json} | 8 ++++---- 2 files changed, 5 insertions(+), 5 deletions(-) rename osv/malicious/npm/certain-common-library/{MAL-0000-ossf-package-analysis-ff3c43a5c6e1f7ce.json => MAL-2024-10894.json} (68%) diff --git a/osv/malicious/.id-allocator b/osv/malicious/.id-allocator index d98622d0d..351b26779 100644 --- a/osv/malicious/.id-allocator +++ b/osv/malicious/.id-allocator @@ -1 +1 @@ -094f7dcf33a202233ed8e0928dd81f6cc817136ef9253392ff977b5345539e34 \ No newline at end of file +16988a45ad6e8dea78221d385cf2b8ad8e13aae91f8688eda776756e72357494 \ No newline at end of file diff --git a/osv/malicious/npm/certain-common-library/MAL-0000-ossf-package-analysis-ff3c43a5c6e1f7ce.json b/osv/malicious/npm/certain-common-library/MAL-2024-10894.json similarity index 68% rename from osv/malicious/npm/certain-common-library/MAL-0000-ossf-package-analysis-ff3c43a5c6e1f7ce.json rename to osv/malicious/npm/certain-common-library/MAL-2024-10894.json index 6d4276320..65e712228 100644 --- a/osv/malicious/npm/certain-common-library/MAL-0000-ossf-package-analysis-ff3c43a5c6e1f7ce.json +++ b/osv/malicious/npm/certain-common-library/MAL-2024-10894.json @@ -2,9 +2,9 @@ "modified": "2024-11-23T16:13:26Z", "published": "2024-11-23T16:13:26Z", "schema_version": "1.5.0", - "id": "", + "id": "MAL-2024-10894", "summary": "Malicious code in certain-common-library (npm)", - "details": "The OpenSSF Package Analysis project identified 'certain-common-library' @ 99.99.3 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n", + "details": "\n---\n_-= Per source details. Do not edit below this line.=-_\n\n## Source: ossf-package-analysis (ff3c43a5c6e1f7ceacc98915255194f2825512de2657547901ef0175ede2d01f)\nThe OpenSSF Package Analysis project identified 'certain-common-library' @ 99.99.3 (npm) as malicious.\n\nIt is considered malicious because:\n\n- The package communicates with a domain associated with malicious activity.\n", "affected": [ { "package": { @@ -29,10 +29,10 @@ "database_specific": { "malicious-packages-origins": [ { - "source": "ossf-package-analysis", - "sha256": "ff3c43a5c6e1f7ceacc98915255194f2825512de2657547901ef0175ede2d01f", "import_time": "2024-11-23T16:38:19.48880758Z", "modified_time": "2024-11-23T16:13:26Z", + "sha256": "ff3c43a5c6e1f7ceacc98915255194f2825512de2657547901ef0175ede2d01f", + "source": "ossf-package-analysis", "versions": [ "99.99.3" ]