Retour à la liste des avis de sécurité
Informational
CVE
CVE-2024-3094
Updated:
Produit(s)
Cloud Optix
Intercept X Endpoint
Intercept X for Server
Sophos Central
Sophos Email
Sophos Firewall
Sophos Home
Sophos Mobile
Sophos RED
Sophos Switch
Sophos UTM
Sophos Wireless
Sophos ZTNA
SophosLabs Intelix
ID de la publication
sophos-sa-20240401-XZ Backdoor
Version de l’article
1
Première publication
Solution
No
Overview
On friday March 29, 2024, Andres Freund announced the discovery of a backdoor in XZ/Liblzma to the Open Source Software (OSS) Security mailing list.
Liblzma is a widely used compression library; used in tools such as XZ, it is also an integral part of many other programs. It was specifically modified to allow backdoor access via SSH on linux. The backdoor is present in XZ Versions 5.6.0 and 5.6.1.
What Sophos products are affected?
The following products have been reviewed against the XZ backdoor vulnerability:
Product or Service | Status | Description |
---|---|---|
Cloud Optix | Not affected | Vulnerable code not present |
SG UTM (all versions) | Not affected | Vulnerable code not present |
Sophos Central | Not affected | Vulnerable code not present |
Sophos Endpoint protection (Windows) | Not affected | Vulnerable code not present |
Sophos Endpoint protection (macOS) | Not affected | Vulnerable code not present |
Sophos Endpoint protection (Linux) | Not affected | Vulnerable code not present |
Sophos Email | Not affected | Vulnerable code not present |
Sophos Firewall (all versions) | Not affected | Vulnerable code not present |
SophosConnect client | Not affected | Vulnerable code not present |
Sophos Home (macOS) | Not affected | Vulnerable code not present |
Sophos Mobile | Not affected | Vulnerable code not present |
Sophos Mobile EAS Proxy | Not affected | Vulnerable code not present |
Sophos Mobile Control app (iOS + Android) | Not affected | Vulnerable code not present |
Sophos Intercept X for Mobile app (iOS + Android) | Not affected | Vulnerable code not present |
Sophos Chrome Security | Not affected | Vulnerable code not present |
Sophos PhishThreat | Not affected | Vulnerable code not present |
Sophos RED | Not affected | Vulnerable code not present |
Sophos AP/APX | Not affected | Vulnerable code not present |
Sophos ZTNA | Not affected | Vulnerable code not present |
Sophos Switch | Not affected | Vulnerable code not present |
SophosLabs Intelix | Not affected | Vulnerable code not present |
Sophos DNS Protection | Not affected | Vulnerable code not present |
Sophos SASI (AntiSpam) | Not affected | Vulnerable code not present |
SUSI | Not affected | Vulnerable code not present |
AV Engine (all platforms) | Not affected | Vulnerable code not present |