Sunil Gottumukkala’s Post

View profile for Sunil Gottumukkala, graphic

CEO, Cofounder | Averlon

I still can't get over the fact that the only reason all of our timelines are filled with XZ Utils is because Andres thankfully decided to investigate a perf issue 😬 "After observing a few odd symptoms around liblzma (part of the xz package) on Debian sid installations over the last weeks (logins with ssh taking a lot of CPU, valgrind errors) I figured out the answer" We, as the industry, need to come up with a better strategy here.

oss-security - backdoor in upstream xz/liblzma leading to ssh server compromise

oss-security - backdoor in upstream xz/liblzma leading to ssh server compromise

openwall.com

To view or add a comment, sign in

Explore topics