GMS-2022-424: Sysctls applied to containers with host IPC or host network namespaces can affect the host
(updated )
Before setting the sysctls for a pod, the pods namespaces must be unshared (created).
References
Detect and mitigate GMS-2022-424 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →