GhostLock Linux kernel bug (CVE-2026-43499) enables root and escape
Source headline: 15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
Intelligence Summary
Nebula Security disclosed GhostLock (CVE-2026-43499), a long-standing Linux kernel flaw affecting many mainstream distributions. Any logged-in local user can exploit it to gain full root privileges on an unpatched system. The vulnerability also enables container escape, expanding impact beyond a single environment. Researchers note the affected code has been present in default builds for many years. Administrators should patch immediately and verify systems are running fixed kernel versions.
Recommended Action
Check whether your Linux kernel deployment is affected by CVE-2026-43499 and apply the vendor fix. Until then, watch authentication and outbound traffic logs for the indicators described in the source. This signal rests on a single report, so corroborate it before acting on anything irreversible.