A use-after-free sat in the Linux kernel since 2008 — and an AI research pipeline is what finally found it
2026-08-09Security
SCTPhantom (CVE-2026-64564) traces to Linux 2.6.25 and has been in every kernel since. Tencent's lab got root on five distributions and escaped a container to host root in six of eight attempts, without CAP_NET_ADMIN or CAP_SYS_ADMIN.