Skip to content

Comment on Containers and Docker: how secure are they?parent

Comments

Those are great exploits, but they don't show how to escape from a container at all.

Actually they do. The first in most cases for affected kernels, the latter in many cases.

If you can execute arbitrary code in kernel you can modify anything in any container.

What you say seems intuitively correct to me, but I have to ask (because I am a hardcore pedant)... source?

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.