CVE-2024-3094 - xz/liblzma backdoor starting with version 5.6.0
backdoor in upstream xz/liblzma leading to ssh server compromise
CVE-2024-3094 Detail
Archlinux - The xz package has been backdoored
All servers have already been updated and tested. Everything is fine.
If you use Arch, test it as follows:
ldd /usr/sbin/sshd | grep -e libsystemd -e liblzma...