Debian: DSA-5649-1: xz-utils security update

Posted by bob on Mar 30, 2024 5:23 AM EDT
LinuxSecurity.com - Hybrid RSS
Mail this story
Print this story

Andres Freund discovered that the upstream source tarballs for xz-utils, the XZ-format compression utilities, are compromised and inject malicious code, at build time, into the resulting liblzma5 library.

Full Story

  Nav
» Read more about: Groups: Debian; Story Type: News Story

« Return to the newswire homepage

This topic does not have any threads posted yet!

You cannot post until you login.