Is the Docker daemon actually a huge security hole?
I see people championing Podman because it's daemonless but is it actually beneficial or is it championed because it's Red Hat and a case of security check boxing?
I see people championing Podman because it's daemonless but is it actually beneficial or is it championed because it's Red Hat and a case of security check boxing?
[1] https://www.cvedetails.com/cve/CVE-2019-15752/
[2] https://www.cvedetails.com/cve/CVE-2019-14271/
[3] https://www.cvedetails.com/cve/CVE-2019-5736/
Yes.
Also the containers on docker hub are a security dumpster fire.