Karna to Linux@lemmy.ml • 8 months agoLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comexternal-linkmessage-square7fedilinkarrow-up199arrow-down10cross-posted to: selfhosted@lemmy.world
arrow-up199arrow-down1external-linkLeaky Vessels flaws allow hackers to escape Docker, runc containerswww.bleepingcomputer.comKarna to Linux@lemmy.ml • 8 months agomessage-square7fedilinkcross-posted to: selfhosted@lemmy.world
minus-square@jbk@discuss.tchncs.delinkfedilink5•8 months agoWouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
minus-squareKarnaOPlinkfedilink3•edit-28 months agoDocker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode. [1] https://docs.docker.com/engine/security/rootless/
Wouldn’t rootless containers have reduced the impact of these vulnerabilities? I’ll happily continue using rootless podman for simple tasks
Docker can be run in rootless mode[1]. Ideally that should be the standard mode unless you have specific requirements not satisfied by rootless mode.
[1] https://docs.docker.com/engine/security/rootless/