|
|
|
|
|
by jacquesm
4390 days ago
|
|
Hm. We'll see about that. I can see a whole pile of potential issues here with 'breaking out of the docker' on par with escaping from the sandbox and breaking the chroot jail, which I see this as a luxury version of. Of course you could try to escalate from a VM to the host (see cloudburst) but that's a rarity. Docker seems to be less well protected against that sort of thing, but I'm nowhere near qualified to make that evaluation so I'll stick to 'seems' for now. It looks like the jump is a smaller one than from a VM. |
|