logoalt Hacker News

fpolingyesterday at 7:55 PM1 replyview on HN

User namespaces significantly rise the risk of exploits and many setups disable them. One may argue that Docker should have used them when they were available, but that would break too many useful setups involving privileged containers.


Replies

worikyesterday at 9:56 PM

> User namespaces significantly rise the risk of exploits

How?