you are viewing a single comment's thread
view the rest of the comments
[–] -1 points 1 month ago

OK, so if you can pass the host root filesystem to a container and then write files or execute code with root privileges on that filesystem, I would definitely consider that a container escape. You're executing arbitrary code on the host from within a container.

  • source
  • parent