It could work for container escape?

Containers, even with root user, are often stripped of these capabilities unless --privileged