Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x

CIS
linux/amd64
alpine 3.23
Tags:

9-alpine3.23, 9.0-alpine3.23, 9.0.20-alpine3.23

Index digest:

sha256:e86964cdca34de374d79cb7f12f66c5254e48c448148d128ce34db43d0e14e8c

Manifest digest:

sha256:5b776a425ee905a70d32588ac720b81168a296340e5b3c8f6c5331dfe7da636f

Size

52.27 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:56212076dd7bb76958f0d95dcd8aede6fd51f8a606fb00b6df86b385029270f6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:b54bc63c6b993dce6a6fd75dfdc493d3f9b21c31d17729b9378b9ac7a49d88bc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:59d51e4c837e3df28ce1604bfe95483d4c47af18b0a7241052bd86954744682a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:276096efa986a1342ad1f996d241ca74a1c572f3c0cf604c0dff8b0be8227ea3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:8d9529395e67ad148e0fe94462e730e7eb0627c246153ae1530ca1ac68ce9822
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:8d4917c08d87368fa5e2dbe89142cc7efd9a1a518ba048248f6711dbfd3f1c2b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:91b6c5852070937a962b7aec36f3e7225db1d1cdc9d00997288f39d43bf722b0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:87c704b2449c6e883f08baecab5790dd288dd20df888a0644e22864a8326250f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:8eb46548763b61b13118bb667adfa02756dfbafb32a7c3a41fe8177c9b9042c9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:37e3c67a6e9deb907c2734daa83f0d986cdda89e26b67febd1a25820c1ad946e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:e2b7d263e912b4e4dc5c186ed0fd0576d60a044a678b11dee3df03b283c90c64
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:bd14e502d680d9f904ab0aab3b12fa0eaedce69f92d7134098492f1a2b36f6de
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:5fdf760cb381dad2abffcb53d845592302ce7f8b898a6bb2778382cccc269b36
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:9a7d8b49f5bef47f45a7c7228129d1919a541ccfd584e1b461f02be4e132e45d