15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
ID: 7736f83b-1c7d-530f-b1cb-543a23ab9681
STIX ID: report--7736f83b-1c7d-530f-b1cb-543a23ab9681
Feed Name: The Hacker News
Threat Score
Researchers disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel use-after-free in futex priority-inheritance that allows any logged-in user to gain root; Nebula released a 97%-reliable exploit that escapes containers and demonstrated a full chain to root when combined with a Firefox flaw, while distributions roll out patches and early fixes introduced a regression (CVE-2026-53166).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
