A backdoor in xz
A backdoor in xz
Posted Mar 30, 2024 12:46 UTC (Sat) by stef70 (guest, #14813)In reply to: A backdoor in xz by mb
Parent article: A backdoor in xz
Indeed. We need to wait until the full analysis of the backdoor to be sure that no tool other than sshd was targeted.
On my Debian system, liblzma.so is linked in several programs and libraries. A lot are unrelated to systemd: grub, insmod, lvm, reboot, gimp, imagemagick, runlevel, ...
All of them are potential targets for that xz backdoor. For now, we have to wait for the full analysis. I am pretty optimistic that sshd was the main target because installing another backdoor on the system or calling "home" would significantly increase the probability or detection.
