[CVE-2026-43499] IonStack part II: GhostLock, a stack-UAF that has existed in ALL Linux distributions for 15 years
nebusec.ai | vulnerability | High | CVE-2026-43499 | #featured | #vulnerability-research | #container-security | #kernel-security | #linux | #privilege-escalation | #use-after-free
Summary
GhostLock (CVE-2026-43499) is a Linux kernel stack use-after-free present since 2011. NebuSec turned it into a reliable local privilege-escalation and container-escape exploit; the issue is fixed in Linux 7.1.
Why it matters
A 15-year-old Linux kernel stack use-after-free was turned into reliable local privilege escalation and container escape, affecting essentially every unpatched major distribution.
- Vendor
- Linux
- Product
- Linux kernel
- Affected versions
- Linux kernel v2.6.39-rc1 through versions before v7.1-rc1; fixed in Linux 7.1
- Published
- Collected
Skip to content