With this exploit it's trivial to jump from one container to another neighbor container. I've tried it and succeeded.

So containers don't protect you, only a VM.

So anyone pulling a malicious dockerfile jeopardizes the host? That would be bad...

...no shit? Why do you think people care about this issue?

> I've tried it and succeeded.

How so?