{"id":182595,"date":"2026-07-10T22:54:14","date_gmt":"2026-07-10T20:54:14","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup"},"modified":"2026-07-10T22:54:14","modified_gmt":"2026-07-10T20:54:14","slug":"v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup","status":"publish","type":"post","link":"https:\/\/prohoster.info\/de\/blog\/news\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup","title":{"rendered":"In Linux wurde die GhostLock-Schwachstelle aufgedeckt, die Root-Zugriff erm\u00f6glicht.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><noindex>          <a rel=\"nofollow\" id=\"memories_button\" href=\"#\" title=\"Verfolgen\"><i class=\"icon-bell\"><\/i><\/a><br \/>1                            <noindex><\/p>\n<p>Eine Schwachstelle im Linux-Kernel entdeckt <a rel=\"nofollow\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2026-43499\">CVE-2026-43499<\/a>, die inoffiziell als GhostLock bezeichnet wird. Das Problem betrifft den Code rtmutex und den Mechanismus futex mit Priorit\u00e4tsvererbung, und seine Ausnutzung k\u00f6nnte es einem lokalen nicht privilegierten Benutzer erm\u00f6glichen, die Berechtigungen auf root zu erh\u00f6hen. Laut <a rel=\"nofollow\" href=\"https:\/\/almalinux.org\/cs\/blog\/2026-07-09-ghostlock\/\">AlmaLinux<\/a>, kann die Schwachstelle auch aus einem Container heraus verwendet werden, um auf den Host zuzugreifen, wenn das System auf einem nicht aktualisierten Kernel l\u00e4uft.<\/p>\n<p><\/noindex>  <noindex><\/p>\n<p>Die Essenz des Fehlers h\u00e4ngt mit der Funktion remove_waiter() in kernel\/locking\/rtmutex.c zusammen. Wie in der <a rel=\"nofollow\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2026-43499\">Beschreibung der NVD<\/a>, beim Zur\u00fccksetzen von proxy-lock im Szenario futex_requeue() die Funktion mit dem aktuellen Task (current) gearbeitet hat, obwohl sie den Zustand des Tasks, der tats\u00e4chlich auf die Sperre gewartet hat (waiter::task), bereinigen sollte. Infolgedessen konnte der Zustand pi_blocked_on m\u00f6glicherweise nicht korrekt bereinigt werden, was zu einem schwebenden Zeiger f\u00fchrte und eine Voraussetzung f\u00fcr use-after-free schuf.<\/p>\n<p><\/noindex> <noindex><\/p>\n<p>Forscher von Nebula Security <a rel=\"nofollow\" href=\"https:\/\/nebusec.ai\/research\/ionstack-part-2\/\">beschrieben GhostLock<\/a> als einen Fehler, der seit 2011 in den Hauptdistributoren von Linux vorhanden ist. Die \u00f6ffentliche Diskussion \u00fcber die Schwachstelle hat das Risiko f\u00fcr Server und Containerumgebungen verst\u00e4rkt: <a rel=\"nofollow\" href=\"https:\/\/blog.cloudlinux.com\/ghostlock-cve-2026-43499-local-root-exploit-kernel-update-for-cloudlinux\/\">CloudLinux<\/a> warnt ausdr\u00fccklich, dass es bereits einen \u00f6ffentlichen Proof of Concept f\u00fcr CVE-2026-43499 gibt, daher sollten Administratoren das Aktualisieren des Kernels nicht aufschieben.<\/p>\n<p><\/noindex> <noindex><\/p>\n<p>Die Korrektur im Upstream besteht darin, dass remove_waiter() waiter::task und nicht current in allen betreffenden Operationen verwenden soll. Darauf weist auch die <a rel=\"nofollow\" href=\"https:\/\/github.com\/advisories\/GHSA-cqc6-9f34-295v\">GitHub Advisory Database<\/a>hin, die die Folgen des Fehlers auflistet: inkorrektes Entfernen aus rbtree ohne die erforderliche Sperre, nicht bereinigter Zustand von pi_blocked_on und die Arbeit von rt_mutex_adjust_prio_chain() nicht mit dem richtigen Task.<\/p>\n<p><\/noindex> <\/p>\n<p>Benutzern von Linux-Distributionen wird empfohlen, die neuesten Kernel-Updates aus den offiziellen Repositories zu installieren. Die Schwachstelle hat einen lokalen Charakter, daher erm\u00f6glicht sie keinen direkten Remote-Zugriff, aber das Risiko ist auf Mehrbenutzerservern, CI-Infrastrukturen, Hosting-Diensten und Systemen mit Containern erheblich h\u00f6her: Eine erfolgreiche Ausnutzung verwandelt den bereits erlangten niedrig privilegierten Zugang in die vollst\u00e4ndige Kontrolle \u00fcber das System.<\/p>\n<p>Quelle: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.linux.org.ru\/news\/security\/18336500\">linux.org.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>1 \u0412 \u044f\u0434\u0440\u0435 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c CVE-2026-43499, \u043f\u043e\u043b\u0443\u0447\u0438\u0432\u0448\u0430\u044f \u043d\u0435\u043e\u0444\u0438\u0446\u0438\u0430\u043b\u044c\u043d\u043e\u0435 \u043d\u0430\u0437\u0432\u0430\u043d\u0438\u0435 GhostLock. \u041f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 \u0437\u0430\u0442\u0440\u0430\u0433\u0438\u0432\u0430\u0435\u0442 \u043a\u043e\u0434 rtmutex \u0438 \u043c\u0435\u0445\u0430\u043d\u0438\u0437\u043c futex \u0441 \u043d\u0430\u0441\u043b\u0435\u0434\u043e\u0432\u0430\u043d\u0438\u0435\u043c \u043f\u0440\u0438\u043e\u0440\u0438\u0442\u0435\u0442\u0430, \u0430 \u0435\u0451 \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0430\u0446\u0438\u044f \u043c\u043e\u0436\u0435\u0442 \u043f\u043e\u0437\u0432\u043e\u043b\u0438\u0442\u044c \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u043e\u043c\u0443 \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u043f\u043e\u0432\u044b\u0441\u0438\u0442\u044c \u043f\u0440\u0430\u0432\u0430 \u0434\u043e root. \u041f\u043e \u0434\u0430\u043d\u043d\u044b\u043c AlmaLinux, \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0442\u0430\u043a\u0436\u0435 \u043c\u043e\u0436\u0435\u0442 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c\u0441\u044f \u0438\u0437 \u043a\u043e\u043d\u0442\u0435\u0439\u043d\u0435\u0440\u0430 \u0434\u043b\u044f \u0432\u044b\u0445\u043e\u0434\u0430 \u043d\u0430 \u0445\u043e\u0441\u0442, \u0435\u0441\u043b\u0438 \u0441\u0438\u0441\u0442\u0435\u043c\u0430 \u0440\u0430\u0431\u043e\u0442\u0430\u0435\u0442 \u043d\u0430 \u043d\u0435 \u043e\u0431\u043d\u043e\u0432\u043b\u0451\u043d\u043d\u043e\u043c \u044f\u0434\u0440\u0435. \u0421\u0443\u0442\u044c \u043e\u0448\u0438\u0431\u043a\u0438 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":9,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-182595","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"1 \u0412 \u044f\u0434\u0440\u0435 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Emin Berklin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/de\/blog\/news\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"de_DE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c GhostLock, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"1 \u0412 \u044f\u0434\u0440\u0435 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/de\/blog\/news\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-07-10T20:54:14+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-07-10T20:54:14+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Eine Schwachstelle in Linux entdeckt: GhostLock, die den Root-Zugriff erm\u00f6glicht | ProHoster","description":"1 Eine Schwachstelle im Linux-Kernel entdeckt","canonical_url":"https:\/\/prohoster.info\/de\/blog\/news\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"de_DE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c GhostLock, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u0434\u043e\u0441\u0442\u0443\u043f | ProHoster","og:description":"1 \u0412 \u044f\u0434\u0440\u0435 Linux \u0440\u0430\u0441\u043a\u0440\u044b\u0442\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c","og:url":"https:\/\/prohoster.info\/de\/blog\/news\/v-linux-raskryta-uyazvimost-ghostlock-pozvolyayushhaya-poluchit-root-dostup","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-07-10T20:54:14+00:00","article:modified_time":"2026-07-10T20:54:14+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"182595","title":null,"description":null,"keywords":null,"keyphrases":{"focus":[],"additional":[]},"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2026-08-05 12:22:05","updated":"2026-08-05 12:22:05","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/182595","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/comments?post=182595"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/posts\/182595\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/media?parent=182595"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/categories?post=182595"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/de\/wp-json\/wp\/v2\/tags?post=182595"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}