CVE-2024-3094 in XZ Utils may allow unauthorized access to Linux systems via sshd. Versions 5.6.0 and 5.6.1 of xz libraries contain malicious code.
Debian stable is not affected, but testing, unstable and experimental are. RedHat based distros are affected.
Check for linux updates today.


Help Net Security
Beware! Backdoor found in XZ utilities used by many Linux distros (CVE-2024-3094) - Help Net Security
A vulnerability (CVE-2024-3094) in XZ Utils may enable a malicious actor to gain unauthorized access to Linux systems remotely.

