logo

15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros

ID: 7736f83b-1c7d-530f-b1cb-543a23ab9681

STIX ID: report--7736f83b-1c7d-530f-b1cb-543a23ab9681

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-07-08

Date Updated: 2026-07-18

Author: [email protected] (The Hacker News)

...
...

Researchers disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel use-after-free in futex priority-inheritance that allows any logged-in user to gain root; Nebula released a 97%-reliable exploit that escapes containers and demonstrated a full chain to root when combined with a Firefox flaw, while distributions roll out patches and early fixes introduced a regression (CVE-2026-53166).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.