Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #268633

Re: making Debian secure by default

From Andy Smith <andy@strugglers.net>
Newsgroups linux.debian.user
Subject Re: making Debian secure by default
Date 2024-03-29 21:10 +0100
Message-ID <InqI1-2BdI-7@gated-at.bofh.it> (permalink)
References (3 earlier) <Inp9f-2A8j-9@gated-at.bofh.it> <Inp9f-2A8j-11@gated-at.bofh.it> <Inp9f-2A8j-13@gated-at.bofh.it> <Inp9f-2A8j-15@gated-at.bofh.it> <Inp9f-2A8j-1@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


Hello,

On Fri, Mar 29, 2024 at 07:02:54PM +0100, Kamil Jońca wrote:
> Andy Smith <andy@strugglers.net> writes:
> > https://www.openwall.com/lists/oss-security/2024/03/29/4
> >
> > (Upstream xz/lzma project compromised, hostile code inserted into
> > sshd in Debian sid and other leading edge distros.)
> 
> O-o, is there any simple test to check if I have infected version or
> not?

Reading the link fully would show you how, but as far as Debian ics
concerned it only made it to testing and sid. If you run either of
those then Debian's own security announcements cover it.

Thanks,
Andy

-- 
https://bitfolk.com/ -- No-nonsense VPS hosting

Back to linux.debian.user | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

Re: making Debian secure by default Kamil Jońca <kjonca@o2.pl> - 2024-03-29 19:30 +0100
  Re: making Debian secure by default Andy Smith <andy@strugglers.net> - 2024-03-29 21:10 +0100
  Re: making Debian secure by default Marc SCHAEFER <schaefer@alphanet.ch> - 2024-03-30 12:40 +0100

csiph-web