RunC vulnerability from a host’s hardening point of view

In February 2019, a vulnerability was found in runC container runtime. CVE-2019-5736 affects Docker’s containers that run on default settings and can lead the attacker to gain root level access on the host. The same fundamental flaw was also found in LXC, where, as opposed to runC, only privileged LXC containers are vulnerable. What is … Continue reading RunC vulnerability from a host’s hardening point of view