well i'll be damned

https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/

this is very important stuff to know about... i suppose there is going to be a patch soon for xz... man, so lucky someone caught this one, holy crap...

always, every time something seems amiss

always investigate

there is almost always a reason why your spidey sense is tingling... here we see in real time an example of this catching a massive attack on computer security

nostr:nevent1qvzqqqqqqypzqql6ujz4ptvkpzzjstcwhxcflq23xyxt30zy8tj4qczm62xnmewkqy2hwumn8ghj7mn0wd68ytn00p68ytnyv4mz7qghwaehxw309aex2mrp0yhxummnw3ezucnpdejz7qpqmdh9386sldcv2hmsaa2ye2t9g8kdx9vkjwxsevnjl94raes6cd9skzff35

New Arch Linux installation media has been released to update the included XZ packages to 5.6.1-2.

XZ Security Update for Arch Linux.

This issue with malicious code in the upstream tarballs of XZ has been fixed in packages for Arch Linux.

Reply to this note

Please Login to reply.

Discussion

No replies yet.