AI Found a Root Bug in Linux That Everyone Missed for 15 Years

TL;DR AI
2 min readKey summary
Nebula Security used its AI tool VEGA to uncover GhostLock, a 15-year-old Linux kernel flaw, and published exploit code for it.
The bug, tracked as CVE-2026-43499, is a use-after-free issue that can grant local root access and enable container escape.
Although a fix was released in April, some Ubuntu LTS versions were still listed as vulnerable or awaiting updates.
Because it can affect widely used servers and container hosts, defenders should verify patch status immediately.



