Apparently NixOS is on the clear because it uses the github repo code instead of the binary tarball. Debian and Red Hat build their packages from the binary tarball. nostr:note1htyh985xawkd2zhqj6t83glk66zatnvcwltcnumt9atgk3paxdcqf7vyj9
Discussion
I love nix.
FreeBSD seems to be clear https://forums.freebsd.org/threads/backdoor-in-upstream-xz-liblzma-leading-to-ssh-server-compromise.92922/
Someone in that thread suggested NetBSD and other Unices that use PKGSRC might be affected.