A backdoor was discovered in the xz/liblzma package, which can lead to SSH server compromise. The backdoor is present in the distributed tarballs for versions 5.6.0 and 5.6.1 and was likely introduced by a compromised upstream repository. The exploit can be triggered when logging in via SSH, causing a slowdown, and potentially allowing unauthorized access. The issue is believed to affect Linux systems running certain patches, but not macOS or BSD.