|
|
Log in / Subscribe / Register

A fuzzy issue of responsible disclosure

A fuzzy issue of responsible disclosure

Posted Aug 13, 2022 1:56 UTC (Sat) by k8to (guest, #15413)
Parent article: A fuzzy issue of responsible disclosure

Re: attack scenarios, cloud vendors who let you run container images seem like a key example. I know some people prefer tar images for container payloads, but I believe some people supply filesystem images, and most cloud container infrastructure doesn't really have a way to protect against kernel exploits, so this kinda seems like it matters to me.

Protecting against this vector does seem pretty hard though.


The LWN site is currently under high scraper load, so comment display has been suppressed for anonymous users. If you are a human, you may read the comments by clicking the button below:

Note: you can avoid this step in the future by logging into your LWN account.


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds