اختبار شهادة الكلاود CompTIA Cloud+

السؤال 33 من 241

كل الأسئلة

A security engineer Identifies a vulnerability m a containerized application. The vulnerability can be exploited
by a privileged process to read tie content of the host's memory. The security engineer reviews the following
Dockerfile to determine a solution to mitigate similar exploits:

Which of the following is the best solution to prevent similar exploits by privileged processes?

الخيارات

  • A Adding the USER myappuserinstruction
  • B Patching the host running the Docker daemon
  • C Changing FROM alpiner3.17 to FROM alpine:latest
  • D Running the container with the ready-only filesystem configuration

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.