Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

9-alpine3.23-dev, 9.0-alpine3.23-dev, 9.0.20-alpine3.23-dev

Index digest:

sha256:8fd65cfb2be09559404185f45137c992f2fe8f2a206942f8f61bbc77dee8e75b

Manifest digest:

sha256:8210d891c3796c51c8e0c2ee5b955ccda3a514132b8ed6fe6750a897013f413c

Size

56.22 MB

Last pushed

10 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:dbd49e4b001f90329e459585adcb99ba627f6aac80225c9ddddbe91a9c63f706
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:e8d2e8cefd8a590b9e41db18ab78b5ac2a987286ab36e44e50e90900e47a9019
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:33d6f68f0d59dcf720971cb8040d29c1dde515e9e32b7fbbe3f4e99962488621
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:139be8896307902c77a0ad0c0004826a4519cf5e08578222273ed0d4c92023da
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:036522970476c79571fe9640a6ab3b29a62a9142e7db7321ee9b10c9a2734222
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:c838fdf818ad2f71913c2c4113163dc9ba36ed85ceba330bf5232bd732d9a5cf
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:e25126b9df8e690816a768270e4b4da9213d20c5ff8abf8e508e8c620f35f2a2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:9be9b470b44dc6db4fdf9117b3cbb7f6e703fe39421246acaf6c59e568322754
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:6924f6c80bda12b2e46211fa439188c7ce51d0f5de164b65ad88826c4dff5be2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:b7d0bddf62965478139ca39463b8d8e2636d68f4fcb8fd540badc0d7a7836ab5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:c22c40214e5ecce69e35eed9959b19b3ffda7ebecbe5713eb68b794c119cb6bc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:ffe75f942e0d66b0306385415488ced0f98f5a76d97463b1b0329b10dc2dcc21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:17f6d7fa57a7b9133f3e86f4ed2dffb5cb08212dff744e247becc3f6ffbc8504
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:1739f24f1ef68a39232ecfd23e4ccf4598358c863ac3e851a9b087cf7bc97722