Karna to Linux@lemmy.ml • 1 year agoLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comexternal-linkmessage-square7arrow-up199cross-posted to: security@lemmy.mlselfhosted@lemmy.world
arrow-up199external-linkLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comKarna to Linux@lemmy.ml • 1 year agomessage-square7cross-posted to: security@lemmy.mlselfhosted@lemmy.world
minus-square@jbk@discuss.tchncs.delinkfedilink5•1 year agoWouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
minus-squareKarnaOPlinkfedilink3•edit-21 year agoDocker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode. [1] https://docs.docker.com/engine/security/rootless/
Wouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
Docker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode.
[1] https://docs.docker.com/engine/security/rootless/