Ghostlock Linux Kernel Vulnerability Exposes Root Access After 15‑Year Hideout
AI‑powered research identified Ghostlock (CVE‑2026‑43499), a critical Linux kernel bug that remained undetected for nearly 15 years. The flaw allows a logged‑in user to obtain root privileges through a use‑after‑free error in kernel synchronization, earning a CVSS score of 7.8. It affects most major distributions, including Red Hat Enterprise Linux, Red Hat OpenShift, and all Ubuntu LTS releases from 18.04 to 26.04. Vendors are preparing patches, and users are urged to update their systems.
The discovery was made by Nebula Security’s VEGA AI tool, underscoring the growing role of artificial intelligence in security research. In parallel, Linus Torvalds publicly defended the use of AI‑assisted development in the Linux kernel, stating that the project is not anti‑AI and that contributions should be judged on technical merit.
These developments highlight both the security risks inherent in long‑standing kernel code and the emerging value of AI in finding such vulnerabilities.