Java Tech Enthusiast
Apr 10, 2024 · Information Security
Backdoor Discovered in xz-utils for Fedora 40 and Rawhide
Red Hat’s emergency advisory (CVE‑2024‑3094) warns that malicious code was inserted into xz‑utils 5.6.0/5.6.1, creating a remote‑access backdoor that affects only Fedora 41 and Rawhide, traced to attacker JiaT75 who compromised the Tukaani project for three years before GitHub disabled the repository.
CVE-2024-3094Fedorabackdoor
0 likes · 4 min read