15-Year-Old Linux Kernel GhostLock Flaw Lets Local Users Gain Root
CVE-2026-43499, dubbed GhostLock by Nebula Security, exposes a long-standing Linux kernel futex bug that can lead to local root access.
CVE-2026-43499, dubbed GhostLock by Nebula Security, exposes a long-standing Linux kernel futex bug that can lead to local root access.
BSDun is an experimental project that brings FreeBSD binary compatibility to Linux, with support already claimed for shells, networking tools, pkg, and more.
Greg Kroah-Hartman says Linux leads CVE counts for the first half of 2026, arguing the numbers reflect responsible reporting, not poor security.
After DirtyFrag, DirtyClone exposes another Linux kernel flaw that may let local attackers gain root access on vulnerable systems.
Linux kernel 7.1 is out with rewritten NTFS support, Btrfs and exFAT updates, broad driver work, and cleanup of obsolete kernel code.
KernelScript 0.1 introduces an experimental type-safe DSL for writing eBPF, userspace, and kernelspace code from one codebase.
ModuleJail is a new project that blacklists unused Linux kernel modules, helping reduce the attack surface exposed by recent local privilege escalation flaws.
Linus Torvalds has merged new Linux kernel docs clarifying what counts as a security bug and how reports should be triaged.
Fragnesia exposes another Linux kernel page-cache attack path, allowing local root escalation through ESP handling.
Linux kernel developers are reviewing a killswitch proposal that can disable vulnerable functions after recent CVE disclosures.