Sploitus New Exploit Targets Linux Kernel Use-After-Free Vulnerability
Article Content
- •CVE-2026-43499 allows disabling SELinux via a use-after-free exploit.
- •The 'ghost-hoock' exploit operates without root access, targeting user-space processes.
- •Multiple Linux kernel versions are affected, with no patches available for older versions like 4.19.
A new exploit targeting CVE-2026-43499, a use-after-free vulnerability in the Linux kernel's futex system, has been released. The exploit, named 'ghost-hoock', allows attackers to disable SELinux by manipulating the kernel's memory management. It is particularly effective on devices running vulnerable kernel versions, including Android devices like the Samsung Galaxy A17. The exploit requires no root access and operates entirely in user space, making it accessible to a wide range of attackers. The vulnerability affects multiple kernel versions, including 5.10, 5.15, 6.1, 6.6, 6.12, 6.18, and 7.0, while older versions like 4.19 are also at risk but lack patches. The exploit has been adapted for various kernel versions, including a specific adaptation for the 4.19 kernel. The first public proof-of-concept was released on July 15, 2026, indicating a growing threat landscape around this vulnerability.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ghost-hoock and CVE-2026-43499 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Multiple Critical CVEs Exploited in Cybersecurity Attacks A series of vulnerabilities, including CVE-2025-49144, CVE-2025-31702, and CVE-2026-46333, have been identified, affecting systems like Notepad++ and FortiWeb devices. These vulnerabilities allow for local privilege escalation, SQL injection, and remote code execution. Attackers exploit these flaws through various…
Critical Linux Kernel Vulnerabilities in Ubuntu Affecting Multiple Systems Recent advisories detail critical vulnerabilities in the Linux kernel affecting various Ubuntu versions. Ubuntu 20.04 and 18.04 are impacted by multiple security issues, including CVE-2026-31657 and CVE-2026-53045. These vulnerabilities could allow attackers to compromise systems, potentially leading to unauthorized…