15-Year-Old GhostLock Linux Kernel Flaw Enables Root Access and Container Escape
Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel vulnerability that allows any logged-in user to gain full root…
Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel vulnerability that allows any logged-in user to gain full root…
CVE-2026-43499, named GhostLock, is a use-after-free vulnerability in the Linux kernel's futex priority inheritance mechanism, present since 2011. It allows any logged-in…
CVE-2026-53166 is a separate crash bug introduced by the initial fix for GhostLock (CVE-2026-43499). The cleanup was still being finalized in early…