[MacPorts] #69619: xz @5.6.1 reportedly backdoored

MacPorts noreply at macports.org
Fri Mar 29 18:02:13 UTC 2024


#69619: xz @5.6.1 reportedly backdoored
----------------------+------------------------
 Reporter:  jmroot    |      Owner:  ryandesign
     Type:  defect    |     Status:  assigned
 Priority:  High      |  Milestone:
Component:  ports     |    Version:
 Keywords:  security  |       Port:  xz
----------------------+------------------------
 See https://www.openwall.com/lists/oss-security/2024/03/29/4

 It looks like it only affects certain configurations and I haven't been
 able to confirm if our binaries are affected, but it seems it would be
 best to revert to a pre-5.6 version immediately and keep an eye out for
 more information as it emerges.

-- 
Ticket URL: <https://trac.macports.org/ticket/69619>
MacPorts <https://www.macports.org/>
Ports system for macOS


More information about the macports-tickets mailing list