On Sat, 2024-03-30 at 12:08 -0500, Dave Ihnat wrote: > Didn't see this go by, but it looks hot enough to risk a repeat > posting. > From a friend: > > It appears there's been a very serious effort to backdoor sshd on > Linux via the xz compression/decompression system. > > https://www.openwall.com/lists/oss-security/2024/03/29/4 > > If you have anything running very recent Linux, it's worth > investigating > whether you're affected. AFAIK this only applies to Rawhide and the (as yet unreleased) F40, both of which I assume will be patched ASAP. poc -- _______________________________________________ users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/users@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue