It could work for container escape?
Containers, even with root user, are often stripped of these capabilities unless --privileged
Containers, even with root user, are often stripped of these capabilities unless --privileged