Skip Navigation

backdoor in upstream xz/liblzma leading to ssh server compromise

www.openwall.com /lists/oss-security/2024/03/29/4
99

You're viewing a single thread.

99 comments
  • I will laugh out loud if the “fixed” binary contains a second backdoor, but one of better quality. It’s reminiscent of a poorly hidden small joint, which is naturally found, and then bargaining, apologizing and making amends begin. Although now it is generally not clear where the code is more proven.

You've viewed 99 comments.