⚠xz-utils 恶意代码警告⚠
xz 5.5.1至5.6.1含有恶意代码,debian testing/sid 用户请立即更新至 5.6.1+really5.4.5-1。
近两个月更新过系统的用户,请立即检查xz版本,示例代码:
xz -V
xz (XZ Utils) 5.2.4
liblzma 5.2.4
本次投毒手法极为复杂,刻意规避代码审计,仅针对deb/rpm系打包,目的在于创造sshd pubkey登录后门。如果您向公网暴露含有后门的ssh服务,且暂无法更新系统,请立即封堵相关端口,并检查所有可疑登录迹象。
相关链接:
https://www.openwall.com/lists/oss-security/2024/03/29/4
https://t.me/CE_Observe/32247
xz 5.5.1至5.6.1含有恶意代码,debian testing/sid 用户请立即更新至 5.6.1+really5.4.5-1。
近两个月更新过系统的用户,请立即检查xz版本,示例代码:
xz -V
xz (XZ Utils) 5.2.4
liblzma 5.2.4
本次投毒手法极为复杂,刻意规避代码审计,仅针对deb/rpm系打包,目的在于创造sshd pubkey登录后门。如果您向公网暴露含有后门的ssh服务,且暂无法更新系统,请立即封堵相关端口,并检查所有可疑登录迹象。
相关链接:
https://www.openwall.com/lists/oss-security/2024/03/29/4
https://t.me/CE_Observe/32247