Information for CVE-2024-3094

Information for CVE-2024-3094

Published 6 Sep 2026Updated 6 Sep 202684 sources
CVSS 0.0 PoC CANDIDATE

What happened

A public source linked this CVE to an advisory or demonstration repository. Review the original reference before use.

Affected versions

Unknown product: See original advisory Fixed: See vendor advisory.

Why it matters

This source correlation may provide earlier visibility while structured CVE metadata is still being updated.

Detection & mitigation

  • Review the original advisory and validate affected versions.
  • Apply vendor-provided updates or mitigations when available.

Public PoC references

RepositoryAuthorFirst seenReference
PoC-in-GitHub · byinarie/CVE-2024-3094-infoInformation for CVE-2024-3094★ 54byinarie2024-03-29CandidatePoC-in-GitHub · FabioBaroni/CVE-2024-3094-checkerQuick and dirty PoC for checking whether a vulnerable version of xz-utils is installed (CVE-2024-3094)★ 72FabioBaroni2024-03-29CandidatePoC-in-GitHub · lypd0/CVE-2024-3094-Vulnerabity-CheckerVerify that your XZ Utils version is not vulnerable to CVE-2024-3094★ 4lypd02024-03-29CandidatePoC-in-GitHub · OpensourceICTSolutions/xz_utils-CVE-2024-3094★ 0OpensourceICTSolutions2024-03-29CandidatePoC-in-GitHub · bioless/xz_cve-2024-3094_detectionScript to detect CVE-2024-3094.★ 0bioless2024-03-29CandidatePoC-in-GitHub · HackerHermanos/CVE-2024-3094_xz_checkThis repository contains a Bash script and a one-liner command to verify if a system is running a vulnerable version of the "xz" utility, as specified by CVE-2024-3094.★ 9HackerHermanos2024-03-29CandidatePoC-in-GitHub · Fractal-Tess/CVE-2024-3094★ 0Fractal-Tess2024-03-29CandidatePoC-in-GitHub · wgetnz/CVE-2024-3094-check★ 5wgetnz2024-03-30CandidatePoC-in-GitHub · emirkmo/xz-backdoor-githubHistory of commits related to the xz backdoor Discovered On March 29, 2024: CVE-2024-3094.★ 11emirkmo2024-03-30CandidatePoC-in-GitHub · ashwani95/CVE-2024-3094★ 0ashwani952024-03-30CandidatePoC-in-GitHub · harekrishnarai/xz-utils-vuln-checkerChecker for CVE-2024-3094 where malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. Through a series of complex obfuscations, the liblzma build process extracts a prebuilt object file from a disguised test file existing in the source code, which is then used to modify specific functions in the liblzma code.★ 1harekrishnarai2024-03-30CandidatePoC-in-GitHub · teyhouse/CVE-2024-3094K8S and Docker Vulnerability Check for CVE-2024-3094★ 11teyhouse2024-03-30CandidatePoC-in-GitHub · gensecaihq/CVE-2024-3094-Vulnerability-Checker-FixerShell scripts to identify and fix installations of xz-utils affected by the CVE-2024-3094 vulnerability. Versions 5.6.0 and 5.6.1 of xz-utils are known to be vulnerable, and this script aids in detecting them and optionally downgrading to a stable, un-compromised version (5.4.6) or upgrading to latest version. Added Ansible Playbook★ 26gensecaihq2024-03-30CandidatePoC-in-GitHub · Horizon-Software-Development/CVE-2024-3094★ 2Horizon-Software-Development2024-03-30CandidatePoC-in-GitHub · hazemkya/CVE-2024-3094-checker★ 0hazemkya2024-03-30CandidatePoC-in-GitHub · lockness-Ko/xz-vulnerable-honeypotAn ssh honeypot with the XZ backdoor. CVE-2024-3094★ 146lockness-Ko2024-03-30CandidatePoC-in-GitHub · brinhosa/CVE-2024-3094-One-Liner★ 1brinhosa2024-03-30CandidatePoC-in-GitHub · isuruwa/CVE-2024-3094CVE-2024-3094★ 0isuruwa2024-03-31CandidatePoC-in-GitHub · Yuma-Tsushima07/CVE-2024-3094A script to detect if xz is vulnerable - CVE-2024-3094★ 4Yuma-Tsushima072024-03-31CandidatePoC-in-GitHub · jfrog/cve-2024-3094-tools★ 45jfrog2024-03-31CandidatePoC-in-GitHub · Simplifi-ED/CVE-2024-3094-patcherAnsible playbook for patching CVE-2024-3094★ 0Simplifi-ED2024-03-31CandidatePoC-in-GitHub · spidygal/CVE-2024-3094-Nmap-NSE-script★ 0spidygal2024-03-31CandidatePoC-in-GitHub · Mustafa1986/CVE-2024-3094★ 0Mustafa19862024-03-31CandidatePoC-in-GitHub · MrBUGLF/XZ-Utils_CVE-2024-3094XZ-Utils工具库恶意后门植入漏洞(CVE-2024-3094)★ 0MrBUGLF2024-04-01CandidatePoC-in-GitHub · galacticquest/cve-2024-3094-detect★ 1galacticquest2024-04-01CandidatePoC-in-GitHub · mightysai1997/CVE-2024-3094-info★ 0mightysai19972024-04-01CandidatePoC-in-GitHub · mightysai1997/CVE-2024-3094★ 0mightysai19972024-04-01CandidatePoC-in-GitHub · mesutgungor/xz-backdoor-vulnerabilityCVE-2024-3094★ 0mesutgungor2024-04-01CandidatePoC-in-GitHub · jbnetwork-git/CVE-2024-3094-XZ-Utils-CheckHerramientas de linux para diferentes funciones.★ 3jbnetwork-git2024-04-01CandidatePoC-in-GitHub · amlweems/xzbotnotes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)★ 3553amlweems2024-04-01CandidatePoC-in-GitHub · zpxlz/CVE-2024-3094Obsidian notes about CVE-2024-3094★ 0zpxlz2024-04-01CandidatePoC-in-GitHub · gustavorobertux/CVE-2024-3094Checker - CVE-2024-3094★ 3gustavorobertux2024-04-01CandidatePoC-in-GitHub · ackemed/detectar_cve-2024-3094★ 0ackemed2024-04-01CandidatePoC-in-GitHub · 0xlane/xz-cve-2024-3094XZ Backdoor Extract(Test on Ubuntu 23.10)★ 170xlane2024-04-01CandidatePoC-in-GitHub · dah4k/CVE-2024-3094★ 0dah4k2024-04-01CandidatePoC-in-GitHub · hackingetico21/revisaxzutilsScript en bash para revisar si tienes la vulnerabilidad CVE-2024-3094.★ 0hackingetico212024-04-02CandidatePoC-in-GitHub · devjanger/CVE-2024-3094-XZ-Backdoor-DetectorCVE-2024-3094 XZ Backdoor Detector★ 0devjanger2024-04-02CandidatePoC-in-GitHub · ScrimForever/CVE-2024-3094Detectar CVE-2024-3094★ 2ScrimForever2024-04-02CandidatePoC-in-GitHub · pentestfunctions/CVE-2024-3094CVE-2024-3094 - Checker (fix for arch etc)★ 3pentestfunctions2024-04-02CandidatePoC-in-GitHub · r0binak/xzk8sDockerfile and Kubernetes manifests for reproduce CVE-2024-3094★ 14r0binak2024-04-02CandidatePoC-in-GitHub · przemoc/xz-backdoor-linksapocalypxze: xz backdoor (2024) AKA CVE-2024-3094 related links★ 3przemoc2024-04-02CandidatePoC-in-GitHub · Security-Phoenix-demo/CVE-2024-3094-fix-exploitsCollection of Detection, Fix, and exploit for CVE-2024-3094★ 2Security-Phoenix-demo2024-04-03CandidatePoC-in-GitHub · MagpieRYL/CVE-2024-3094-backdoor-env-containerThis is a container environment running CVE-2024-3094 sshd backdoor instance, working with https://github.com/amlweems/xzbot project. IT IS NOT Docker, just implemented by chroot.★ 0MagpieRYL2024-04-03CandidatePoC-in-GitHub · Bella-Bc/xz-backdoor-CVE-2024-3094-CheckVerify if your installed version of xz-utils is vulnerable to CVE-2024-3094 backdoor★ 2Bella-Bc2024-04-03CandidatePoC-in-GitHub · TheTorjanCaptain/CVE-2024-3094-CheckerThe repository consists of a checker file that confirms if your xz version and xz-utils package is vulnerable to CVE-2024-3094.★ 0TheTorjanCaptain2024-04-03CandidatePoC-in-GitHub · iheb2b/CVE-2024-3094-CheckerThe CVE-2024-3094 Checker is a Bash tool for identifying if Linux systems are at risk from the CVE-2024-3094 flaw in XZ/LZMA utilities. It checks XZ versions, SSHD's LZMA linkage, and scans for specific byte patterns, delivering results in a concise table format.★ 1iheb2b2024-04-03CandidatePoC-in-GitHub · felipecosta09/cve-2024-3094A tutorial on how to detect the CVE 2024-3094★ 4felipecosta092024-04-04CandidatePoC-in-GitHub · weltregie/liblzma-scanScans liblzma from xu-utils for backdoor (CVE-2024-3094)★ 0weltregie2024-04-04CandidatePoC-in-GitHub · KaminaDuck/ansible-CVE-2024-3094Ansible playbooks designed to check and remediate CVE-2024-3094 (XZ Backdoor)★ 4KaminaDuck2024-04-04CandidatePoC-in-GitHub · robertdebock/ansible-playbook-cve-2024-3094A small repo with a single playbook.★ 1robertdebock2024-04-04CandidatePoC-in-GitHub · badsectorlabs/ludus_xz_backdoorAn Ansible Role that installs the xz backdoor (CVE-2024-3094) on a Debian host and optionally installs the xzbot tool.★ 6badsectorlabs2024-04-05CandidatePoC-in-GitHub · Juul/xz-backdoor-scanScan for files containing the signature from the `xz` backdoor (CVE-2024-3094)★ 0Juul2024-04-06CandidatePoC-in-GitHub · fevar54/Detectar-Backdoor-en-liblzma-de-XZ-utils-CVE-2024-3094-Regla YARA para detectar el backdoor de liblzma en XZ Utils 5.6.0/5.6.1 (CVE-2024-3094).★ 0fevar542024-04-13CandidatePoC-in-GitHub · neuralinhibitor/xzwhyXZ Utils CVE-2024-3094 POC for Kubernetes★ 5neuralinhibitor2024-04-18CandidatePoC-in-GitHub · AndreaCicca/Sicurezza-Informatica-PresentazionePresentazione per il corsi di sicurezza Informatica sulla vulnerabilità CVE-2024-3094★ 0AndreaCicca2024-05-22CandidatePoC-in-GitHub · shefirot/CVE-2024-3094Basic POC to test CVE-2024-3094 vulnerability inside K8s cluster★ 0shefirot2024-06-11CandidatePoC-in-GitHub · robertdfrench/ifuncd-upGNU IFUNC is the real culprit behind CVE-2024-3094★ 61robertdfrench2024-07-05CandidatePoC-in-GitHub · been22426/CVE-2024-3094CVE-2024-3094 실습 환경 구축 및 보고★ 0been224262025-04-16CandidatePoC-in-GitHub · laxmikumari615/Linux---Security---Detect-and-Mitigate-CVE-2024-3094It was determined that malicious code was discovered in the upstream tarballs of xz, starting with version 5.6.0. # It was determined that only certain operating systems and operating system versions were affected by this vulnerability.★ 0laxmikumari6152025-05-20CandidatePoC-in-GitHub · valeriot30/cve-2024-3094A XZ backdoor vulnerability explained in details★ 1valeriot302025-06-03CandidatePoC-in-GitHub · 24Owais/threat-intel-cve-2024-3094Threat intelligence report analyzing the xz-utils backdoor vulnerability (CVE-2024-3094)★ 124Owais2025-06-19CandidatePoC-in-GitHub · Ikram124/CVE-2024-3094-analysisSecurity analysis project: Real-world CVE breakdown★ 1Ikram1242025-06-27CandidatePoC-in-GitHub · mrk336/CVE-2024-3094CVE-2024-3094 exposed a backdoor in the XZ compression library, allowing remote SSH access by bypassing authentication. It’s a major supply chain attack affecting Linux systems, highlighting risks in trusted open-source components.★ 1mrk3362025-09-12CandidatePoC-in-GitHub · Titus-soc/-CVE-2024-3094-Vulnerability-Checker-Fixer-PublicA lightweight utility designed to detect and remediate systems affected by CVE-2024-3094, a critical vulnerability impacting [insert affected software/library here if known]. This tool provides automated scanning, reporting, and optional mitigation steps to help administrators and security teams secure their environments quickly.★ 0Titus-soc2025-09-20CandidatePoC-in-GitHub · M1lo25/CS50FinalProjectInvestigation into the XZ Utils backdoor (CVE-2024-3094): chronology, attack chain, risk to SSH, and supply-chain insights. Includes slides, sources, and mitigations (parity checks, attestations, or SBOMs, as well as SLSA)★ 1M1lo252025-10-16CandidatePoC-in-GitHub · ThomRgn/xzutils_backdoor_obfuscationScript to obfuscate a payload the same way as it was done by the XZ utils attack (CVE-2024-3094)★ 0ThomRgn2025-10-22CandidatePoC-in-GitHub · encikayelwhitehat-glitch/CVE-2024-3094★ 0encikayelwhitehat-glitch2026-01-14CandidatePoC-in-GitHub · BOSE122/CVE-2024-3094★ 0BOSE1222026-01-15CandidatePoC-in-GitHub · hackura/xz-cve-2024-3094Python demo simulating CVE-2024-3094: a supply chain backdoor in XZ Utils with a trigger-based stealth activation.★ 0hackura2026-01-25CandidatePoC-in-GitHub · michalAshurov/writeup-CVE-2024-3094★ 0michalAshurov2026-03-11CandidatePoC-in-GitHub · extracoding-dozen/CVE-2024-3094Research of CVE-2024-3094 vulnerability.★ 0extracoding-dozen2026-03-13CandidatePoC-in-GitHub · ElinaNotElina/cve-2024-3094-analysis★ 0ElinaNotElina2026-04-04CandidatePoC-in-GitHub · vnchk1/sec_review_cve-2024-3094Security review уязвимости CVE-2024-3094 с открытым исходным кодом★ 0vnchk12026-04-08CandidatePoC-in-GitHub · h3raklez/CVE-2024-3094CVE-2024-3094 - XZ Utils Backdoor★ 0h3raklez2026-04-09CandidatePoC-in-GitHub · Ava-Vispilio/CVE-2024-3094★ 0Ava-Vispilio2026-04-15CandidatePoC-in-GitHub · 0xBlackash/CVE-2024-3094CVE-2024-3094★ 00xBlackash2026-04-23CandidatePoC-in-GitHub · vesjolyjd/Kaspersky_CVE-2024-3094★ 0vesjolyjd2026-04-30CandidatePoC-in-GitHub · stevehenderson/lab_xz_backdoorSome labs looking at the xz backdoor vulnerability (CVE-2024-3094)★ 0stevehenderson2026-06-13CandidatePoC-in-GitHub · nnatsopoulos/xz-backdoor-researchCVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool★ 1nnatsopoulos2026-06-14CandidatePoC-in-GitHub · x-cmd-build/xzVendored xz-utils @ 5.8.3 (post-CVE-2024-3094) — portable binary distribution for x-cmd, musl-static + macOS + Windows MSYS★ 0x-cmd-build2026-07-21CandidatePoC-in-GitHub · Preacher98/Report-XZ-Utils-CVE-2024-3094Hello,★ 0Preacher982026-07-22CandidatePoC-in-GitHub · namegabevictoire01-sys/cs50-cybersecurity-final-projectCS50 Cybersecurity Final Project - Analysis of CVE-2024-3094★ 1namegabevictoire01-sys2026-08-10CandidatePoC-in-GitHub · mhicairo-hue/cs50-cybersecurity-final-projectCS50 Cybersecurity Final Project: Technical Analysis of the XZ Utils Backdoor (CVE-2024-3094)★ 0mhicairo-hue2026-09-07Candidate