Вярно е, ама не баш...
Първо става въпрос само за един от всичките подвидове, а именно
As far as we know, the only compromised edition was Linux Mint 17.3 Cinnamon edition. If you downloaded another release or another edition, this does not affect you.
Второ -
If you downloaded via torrents or via a direct HTTP link, this doesn’t affect you either.
Трето -
Finally, the situation both happened and was solved today, so it should only impact people who downloaded this edition on February 20th.
Би било редно при публикуване на подобни новини да се публикова цялостната информация, а е само да се крещи - ВАЖНО!
How to check if your ISO is compromised?
If you still have the ISO file, check its MD5 signature with the command “md5sum yourfile.iso” (where yourfile.iso is the name of the ISO).
The valid signatures are below:
6e7f7e03500747c6c3bfece2c9c8394f linuxmint-17.3-cinnamon-32bit.iso
e71a2aad8b58605e906dbea444dc4983 linuxmint-17.3-cinnamon-64bit.iso
30fef1aa1134c5f3778c77c4417f7238 linuxmint-17.3-cinnamon-nocodecs-32bit.iso
3406350a87c201cdca0927b1bc7c2ccd linuxmint-17.3-cinnamon-nocodecs-64bit.iso
df38af96e99726bb0a1ef3e5cd47563d linuxmint-17.3-cinnamon-oem-64bit.iso
If you still have the burnt DVD or USB stick, boot a computer or a virtual machine offline (turn off your router if in doubt) with it and let it load the live session.
Once in the live session, if there is a file in /var/lib/man.cy, then this is an infected ISO.
What to do if you are affected?
Delete the ISO. If you burnt it to DVD, trash the disc. If you burnt it to USB, format the stick.
If you installed this ISO on a computer:
Put the computer offline.
Backup your personal data, if any.
Reinstall the OS or format the partition.
Change your passwords for sensitive websites (for your email in particular).
Има и още - освен уеб сайта е била компрометирана и БД с форума и потребителските акаунти. Въпреки, че паролите там се пазят криптирани се препоръчва ако имате акаунт там да си смените паролата особено ако ползвате еднакви пароли за различни форуми/пощи и т.н.
People primarily at risk are people whose forums password is the same as their email password or as the password they use on popular or sensitive websites. Although the passwords cannot be decrypted, they can be brute-forced (found by trial) if they are simple enough or guessed if they relate to personal information.
Out of precaution we recommend all forums users change their passwords.
While changing your passwords, please start with your email password and do not use the same password on different websites.