From f47e31b01610145942ea08f5ba703ed414716de6 Mon Sep 17 00:00:00 2001 From: Viviana Sutedjo Date: Mon, 18 Mar 2024 06:38:39 -0700 Subject: [PATCH] Replace faulty CVE number in descriptions for CVE-2023-6019. PiperOrigin-RevId: 616810612 Change-Id: I0c80ec8f80b7922364c7adc4c68625194b74a367 --- google/detectors/rce/ai/cve20236019/README.md | 4 ++-- google/detectors/rce/ai/cve20236019/build.gradle | 2 +- google/detectors/rce/ai/cve20236019/settings.gradle | 2 +- 3 files changed, 4 insertions(+), 4 deletions(-) diff --git a/google/detectors/rce/ai/cve20236019/README.md b/google/detectors/rce/ai/cve20236019/README.md index d4003e3df..0bd374114 100644 --- a/google/detectors/rce/ai/cve20236019/README.md +++ b/google/detectors/rce/ai/cve20236019/README.md @@ -1,10 +1,10 @@ -# Ray CVE-2023-6091 Detector +# Ray CVE-2023-6019 Detector This plugin for Tsunami detects a remote code execution (RCE) vulnerability in Ray, which is an ML platform. More information on the vulnerability: -* [CVE-2023-6091](https://nvd.nist.gov/vuln/detail/CVE-2023-6091) +* [CVE-2023-6019](https://nvd.nist.gov/vuln/detail/CVE-2023-6019) * [POC](https://github.com/protectai/ai-exploits/blob/main/ray/nuclei-templates/ray-cpuprofile-cmd-injection.yaml) ## Build jar file for this plugin diff --git a/google/detectors/rce/ai/cve20236019/build.gradle b/google/detectors/rce/ai/cve20236019/build.gradle index fb98ddc51..59b9e8a0f 100644 --- a/google/detectors/rce/ai/cve20236019/build.gradle +++ b/google/detectors/rce/ai/cve20236019/build.gradle @@ -2,7 +2,7 @@ plugins { id 'java-library' } -description = 'Tsunami detector for CVE-2023-6091.' +description = 'Tsunami detector for CVE-2023-6019.' group = 'com.google.tsunami' version = '0.0.1-SNAPSHOT' diff --git a/google/detectors/rce/ai/cve20236019/settings.gradle b/google/detectors/rce/ai/cve20236019/settings.gradle index 58358a0dd..97fbf8c72 100644 --- a/google/detectors/rce/ai/cve20236019/settings.gradle +++ b/google/detectors/rce/ai/cve20236019/settings.gradle @@ -1 +1 @@ -rootProject.name = 'cve20236091' +rootProject.name = 'cve20236019'