Long-lived Linux kernel flaw permits root container escape
A Linux kernel vulnerability present since 2011 can allow an unprivileged local attacker to gain root privileges and escape a Docker container, according to new technical research detailing an exploit for the flaw. Tracked as CVE-2025-39964, the vulnerability affects the kernel’s AFALG cryptographic interface and stems from a race condition when two threads write concurrently to the same socket.…
We haven't written up this one. Arabian Post has the full story — the link below goes straight to it.