XZ Utils backdoor

In February 2024, a malicious backdoor was introduced to the Linux build of the xz utility within the liblzma library in versions 5.6.0 and 5.6.1 by an account using the name "Jia Tan". The backdoor gives an attacker who possesses a specific Ed448 private key remote code execution capabilities on the affected Linux system. The issue has been given the Common Vulnerabilities and Exposures number and has been assigned a CVSS score of 10.0, the highest possible score.

While xz is commonly present in most Linux distributions, at the time of discovery the backdoored version had not yet been widely deployed to production systems, but was present in development versions of major distributions. The backdoor was discovered by the software developer Andres Freund, who announced his findings on 29 March 2024. Provided by Wikipedia
Showing 1 - 20 results of 197 for search 'Tan, Jia', query time: 0.03s Refine Results
2
by Tan, Jia Ming
Published 2013
Get full text
Get full text
Final Year Project / Dissertation / Thesis
13
by Tan, Jia Yi
Published 2022
Get full text
Get full text
Final Year Project / Dissertation / Thesis
19
Search Tools: Get RSS Feed Email this Search