Red Hat warns of backdoor in XZ tools used by most Linux distros
ID: c5a81d5d-774b-5299-b348-9041738d4d60
STIX ID: report--c5a81d5d-774b-5299-b348-9041738d4d60
Feed Name: Bleeping Computer
Threat Score
**Executive summary:** A malicious backdoor was discovered injected into XZ Utils/liblzma (versions 5.6.0 and 5.6.1), enabling interference with sshd authentication via systemd and potentially allowing unauthorized pre-auth remote access; major Linux distributions and security agencies (Red Hat, Debian, CISA) have issued high-severity advisories (CVE-2024-3094, CVSS 10.0) and recommended downgrades and forensic hunts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
