Karna to [email protected] • 11 months agoLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comexternal-linkmessage-square7fedilinkarrow-up187arrow-down10cross-posted to: [email protected][email protected]selfhosted
arrow-up187arrow-down1external-linkLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comKarna to [email protected] • 11 months agomessage-square7fedilinkcross-posted to: [email protected][email protected]selfhosted
minus-square@[email protected]linkfedilink5•11 months agoWouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
minus-squareKarnaOPlinkfedilink3•edit-211 months agoDocker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode. [1] https://docs.docker.com/engine/security/rootless/
Wouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
Docker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode.
[1] https://docs.docker.com/engine/security/rootless/