With this exploit it's trivial to jump from one container to another neighbor container. I've tried it and succeeded.
So containers don't protect you, only a VM.
So anyone pulling a malicious dockerfile jeopardizes the host? That would be bad...
> I've tried it and succeeded.
How so?
So anyone pulling a malicious dockerfile jeopardizes the host? That would be bad...