PT-2024-40544 · Promonlogicalis · Asn1
Published
2024-07-31
·
Updated
2024-07-31
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
github.com/PromonLogicalis/asn1 module version 7bdca06d0edf
Description:
The issue concerns malicious code in the github.com/PromonLogicalis/asn1 module. This malicious code downloads a program from a remote web server and executes it.
Recommendations:
For version 7bdca06d0edf of the github.com/PromonLogicalis/asn1 module, avoid using this version until a fixed version is available. As a temporary workaround, consider restricting access to any functionality that utilizes this module to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Asn1