Quantcast
Viewing all articles
Browse latest Browse all 26

CVE-2024-3094: Malicious code in xz 5.6.0 and 5.6.1 tarballs

We shouldn’t wait for the rebuild, xz, libarchive, all related packages should be removed/marked insecure and pushed to master.
Let people rebuild what they need themselves.

There is reason to believe that older versions are possibly compromised too.

Read full topic


Viewing all articles
Browse latest Browse all 26

Trending Articles