A Vulnerability in XZ Utils Could Allow for Remote Code Execution

A vulnerability has been discovered in XZ Utils that could allow for remote code execution. XZ is a general-purpose data compression format present in nearly every Linux distribution, both community projects and commercial product distributions. Succes...

Continue ReadingA Vulnerability in XZ Utils Could Allow for Remote Code Execution

Reported Supply Chain Compromise Affecting XZ Utils Data Compression Library, CVE-2024-3094

CISA and the open source community are responding to reports of malicious code being embedded in XZ Utils versions 5.6.0 and 5.6.1. This activity was assigned CVE-2024-3094. XZ Utils is data compression software and may be present in Linux distributio...

Continue ReadingReported Supply Chain Compromise Affecting XZ Utils Data Compression Library, CVE-2024-3094