Hopefully this does not affect you but if you are running something like Arch, OpenSUSE tumbleweed, Debian sid or Fedora Rawhide and use SSH for remote access you should do a full wipe.

you are viewing a single comment's thread
view the rest of the comments
[–] 3 points 2 years ago (1 child)

That's not correct as far as I can tell. The backdoored code ended up in release tarballs (but not source tarballs because of autoconf fuckery), see eg. this mailing list discussion.

  • source
  • parent
  • hideshow 1 child comment