Home > Kubernetes > Deployment > Container is running without privilege escalation control
medium severity

Container is running without privilege escalation control (SNYK-CC-K8S-9)

Issue

`allowPrivilegeEscalation` attribute is not set to `false`

Impact

Processes could elevate current privileges via known vectors, for example SUID binaries

Resolve

Kubernetes
Set `securityContext.allowPrivilegeEscalation` to `false`
Terraform
Set `spec.container.security_context.allow_privilege_escalation` to `false`

References