GhostLock (CVE-2026-43499) Local Root Exploit: Kernel Update for CloudLinux
GhostLock (CVE-2026-43499) is a use-after-free bug in the Linux kernel's futex priority-inheritance code that lets any unprivileged local...
Read MoreBlog Series
GhostLock (CVE-2026-43499) is a use-after-free bug in the Linux kernel's futex priority-inheritance code that lets any unprivileged local...
Read More
Bad epoll (CVE-2026-46242) is a use-after-free bug in the Linux kernel's epoll subsystem that lets an unprivileged local...
Read More
Januscape (CVE-2026-53359) is a race condition in the Linux kernel's KVM/x86 memory management. A malicious virtual machine can...
Read More
DirtyClone (CVE-2026-43503) is a new public proof-of-concept for the same shared-fragment-marker kernel bug behind Dirty Frag and Fragnesia,...
Read More
A public proof-of-concept named IPv6 Frag Escape turns an unprivileged local user into root on the host, exploiting...
Read More
pedit COW (CVE-2026-46331) is a Linux kernel privilege escalation affecting CloudLinux 7h/8/9/10 and CloudLinux for Ubuntu 22.04. Mitigation...
Read More
CIFSwitch is a Linux kernel privilege escalation affecting CloudLinux 7h/8/9/10 hosts that have cifs-utils installed. Mitigation and patched...
Read More
PinTheft is a new Linux kernel local privilege escalation in the RDS protocol. We tested the public PoC...
Read More
Linux kernel ptrace exit-race (CVE-2026-46333) leaks SSH host keys and /etc/shadow. CloudLinux 8 LTS, 9, and 10 affected....
Read More
Fragnesia is a new XFRM/ESP Linux kernel local privilege escalation in the Dirty Frag class. Apply the mitigation...
Read More