<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<atom:link href="http://dev1galaxy.org/extern.php?action=feed&amp;tid=6530&amp;type=rss" rel="self" type="application/rss+xml" />
		<title><![CDATA[Dev1 Galaxy Forum / Malware found in xz]]></title>
		<link>http://dev1galaxy.org/viewtopic.php?id=6530</link>
		<description><![CDATA[The most recent posts in Malware found in xz.]]></description>
		<lastBuildDate>Sun, 28 Apr 2024 22:22:35 +0000</lastBuildDate>
		<generator>FluxBB</generator>
		<item>
			<title><![CDATA[Re: Malware found in xz]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=49742#p49742</link>
			<description><![CDATA[<p>Thanks for that, checked mine and it&#039;s 5.4.1 as well.</p>]]></description>
			<author><![CDATA[dummy@example.com (greenjeans)]]></author>
			<pubDate>Sun, 28 Apr 2024 22:22:35 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=49742#p49742</guid>
		</item>
		<item>
			<title><![CDATA[Re: Malware found in xz]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=49296#p49296</link>
			<description><![CDATA[<p>From the link below:</p><div class="quotebox"><blockquote><div><p>Specifically, the nefarious code baked into the code is designed to interfere with the sshd daemon process for SSH (Secure Shell) via the systemd software suite,</p></div></blockquote></div><p>So does this mean that Devuan and others based on Devuan would be immune from this malware, even if it is installed?</p><p>Forgot to put the link. Here it is: <a href="https://thehackernews.com/2024/03/urgent-secret-backdoor-found-in-xz.html" rel="nofollow">https://thehackernews.com/2024/03/urgen … in-xz.html</a></p>]]></description>
			<author><![CDATA[dummy@example.com (Ron)]]></author>
			<pubDate>Sat, 30 Mar 2024 19:23:43 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=49296#p49296</guid>
		</item>
		<item>
			<title><![CDATA[Malware found in xz]]></title>
			<link>http://dev1galaxy.org/viewtopic.php?pid=49283#p49283</link>
			<description><![CDATA[<p>So a developer of XZ for Debian has put malware in it. From what I understand it only affects those who are using testing or the unstable branch. Look to see if you are using versions 5.5.1alpha-0.1 (uploaded on 2024-02-01), up to and including 5.6.1-1. I&#039;m on version 5.4.1, so I&#039;m good.</p><p>Links about this:</p><p><a href="https://lists.debian.org/debian-security-announce/2024/msg00057.html" rel="nofollow">https://lists.debian.org/debian-securit … 00057.html</a><br /><a href="https://www.openwall.com/lists/oss-security/2024/03/29/4" rel="nofollow">https://www.openwall.com/lists/oss-secu … 24/03/29/4</a></p>]]></description>
			<author><![CDATA[dummy@example.com (Ron)]]></author>
			<pubDate>Sat, 30 Mar 2024 13:25:55 +0000</pubDate>
			<guid>http://dev1galaxy.org/viewtopic.php?pid=49283#p49283</guid>
		</item>
	</channel>
</rss>
