logo

Red Hat warns of backdoor in XZ tools used by most Linux distros

ID: c5a81d5d-774b-5299-b348-9041738d4d60

STIX ID: report--c5a81d5d-774b-5299-b348-9041738d4d60

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2024-03-29

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

**Executive summary:** A malicious backdoor was discovered injected into XZ Utils/liblzma (versions 5.6.0 and 5.6.1), enabling interference with sshd authentication via systemd and potentially allowing unauthorized pre-auth remote access; major Linux distributions and security agencies (Red Hat, Debian, CISA) have issued high-severity advisories (CVE-2024-3094, CVSS 10.0) and recommended downgrades and forensic hunts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.