Debian: DSA-5649-1: xz-utils security update
Mar29
on March 29, 2024
at 5:04 pm
Posted In: Uncategorized
Andres Freund discovered that the upstream source tarballs for xz-utils, the XZ-format compression utilities, are compromised and inject malicious code, at build time, into the resulting liblzma5 library.
Comment