PT-2024-40544 · Promonlogicalis · Asn1

Published

2024-07-31

·

Updated

2024-07-31

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: github.com/PromonLogicalis/asn1 module version 7bdca06d0edf
Description: The issue concerns malicious code in the github.com/PromonLogicalis/asn1 module. This malicious code downloads a program from a remote web server and executes it.
Recommendations: For version 7bdca06d0edf of the github.com/PromonLogicalis/asn1 module, avoid using this version until a fixed version is available. As a temporary workaround, consider restricting access to any functionality that utilizes this module to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Related Identifiers

GO-2024-3012

Affected Products

Asn1