| ▲ | rcxdude 3 hours ago | |
If you can get to real UID 0 from a rootless container, you can escape it, but you do need to take extra steps. Same with it working on Alpine: the underlying vulnerability probably still exists, but the script might need some adjusting. It's a PoC, not a full exploit for every situation. | ||
| ▲ | 2 hours ago | parent [-] | |
| [deleted] | ||