Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2026-43499] IonStack part II: GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years

Summary

GhostLock (CVE-2026-43499) is a Linux kernel stack use-after-free present since 2011. NebuSec turned it into a reliable local privilege-escalation and container-escape exploit; the issue is fixed in Linux 7.1.

Why it matters

A 15-year-old Linux kernel stack use-after-free was turned into reliable local privilege escalation and container escape, affecting essentially every unpatched major distribution.
Vendor
Linux
Product
Linux kernel
Affected versions
Linux kernel v2.6.39-rc1 through versions before v7.1-rc1; fixed in Linux 7.1
Published
Collected

original ↗

Related coverage

back