CSMS 60068209OTHERinformational

SECURITY NOTICE: Roll Back Certain Linux Distribution

Published Apr 5, 2024

Summary

CBP issued a security notice alerting the trade community to a critical Linux supply-chain vulnerability (CVE-2024-3094) in xz Utils versions 5.6.0 and 5.6.1, recommending rollback to earlier versions for affected distributions.

Summary is machine-generated at the linking layer for discovery only. Refer to the source bulletin for authoritative guidance.

CSMS 60068209 · full bulletin