Calling it a Linux security issue is a bit erroneous, a weak Ssh password on BSD will get you hijacked too. Or Osx, or even Windows!
But, yeah, the headline is click bait. Linux systems are known to be quite secure so this is the old "Man Bites Dog" shtick.
If the payload is an interpreted script, or something that's compiled (if it can find a compiler, etc) then it may be able to infect different OSes.