package: tini_0.19.0-3+b3_amd4.deb

When installing tini from
https://packages.debian.org/trixie/amd64/tini/download . The version of the
package "tini_0.19.0-3+b3_amd64.deb" with signature
"9803a1d1f1a5f7206825001744c2ab00dec8b865f470cbfdb40b3d339d10b71c" is being
flagged as malware. Upon investigating in Virustotal, it appears this is a
known detection where the "tini-static" file with checksum
"14a3bdbf9e507ee266b51ec94f12c3411c630d177c3532f160539516612db2b6"
specifically is showing signs of obfuscating itself and performing system
calls.
The versions of the package prior to this have no issues and are not
identified as malware.

Virustotal link for tini_0.19.0-3+b3_amd4.deb (
https://www.virustotal.com/gui/file/9803a1d1f1a5f7206825001744c2ab00dec8b865f470cbfdb40b3d339d10b71c/relations
)
VirusTotal Link for tini-static (
https://www.virustotal.com/gui/file/14a3bdbf9e507ee266b51ec94f12c3411c630d177c3532f160539516612db2b6/behavior
)

I recommend investigating the tini package and tini-static subpackage and
verifying that they are free of malware.

Reply via email to