automake
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

role of GNU build system in recent xz-utils backdoor


From: Richard Stallman
Subject: role of GNU build system in recent xz-utils backdoor
Date: Mon, 01 Apr 2024 18:49:30 -0400

[[[ To any NSA and FBI agents reading my email: please consider    ]]]
[[[ whether defending the US Constitution against all enemies,     ]]]
[[[ foreign or domestic, requires you to follow Snowden's example. ]]]

  > I was recently reading about the backdoor announced in xz-utils the
  > other day, and one of the things that caught my attention was how
  > (ab)use of the GNU build system played a role in allowing the backdoor
  > to go unnoticed: https://openwall.com/lists/oss-security/2024/03/29/4

You've brought up an idea for catching cracks by certain kinds of
mistakes.  Thank you.

Your message seems to say that there is or was some other problem in
one of the GNU autotools.  Without details, I can't be sure you mean
that.

Is that really so?  If so, which programs are involved?
Has it been reported to their maintainers?

I don't want to get involved in fixing the bug, but I want to
make sure the GNU Project is working on it.

-- 
Dr Richard Stallman (https://stallman.org)
Chief GNUisance of the GNU Project (https://gnu.org)
Founder, Free Software Foundation (https://fsf.org)
Internet Hall-of-Famer (https://internethalloffame.org)





reply via email to

[Prev in Thread] Current Thread [Next in Thread]