Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.46-debian-dev, 1.46-debian13-dev, 1.46-dev, 1.46.1-debian-dev, 1.46.1-debian13-dev, 1.46.1-dev

Index digest:

sha256:fda34dd6659d885bae1675642e2b7a6850e4dc34c71c0b4347a39f69f8c1f9c2

Manifest digest:

sha256:24e5c8c1f59643884d6b72f4a4db7240fe2dfd6a24cef335830c978e6a777dc2

Size

47.88 MB

Last pushed

3 hours ago

Vulnerabilities

0
2
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:e9830448b6a35dfcce727fcce72926de834e72618f985a6a08f8af9c69bd7450
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:c6f41aa8958dae340f8b1856bf014137e44c3087efeea79a056554a45511159f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:19e357883ce3ffc420c78b5f7df2e0a8fe1d372e00116594067b933965d9528a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:6c14a7f573eff0c67083352f7c68cc9df89689e6f4658ff7d08f7dc08b013009
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:7145278b517de266c1d7a2b350bd3d8349d8d390292ba41b97abf2141d4dd56d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:65fa41cd53f851f6b20f96f4ff3993c4e7e63f4f8b616ad90639ef0790d62a68
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:cab3d07eda65b3744760541825d749b1fd6583b31001146200c146d17e0e24d9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:45e6225f3914300fc5c960cdd52d381c8c32f827b8f6af6269b525f8fb2137f2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:6deff07517c141288d5488eedf78d9714d0f656915040d83071e7c61d47397ac
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:1483a3a8bd9db2f5e6e2189fe36c5016d6d2c55714231f17b5f924d94beda054
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:24c5b6e20252a991541466b7a2cbcaa809281d5a1a3949eb4e7d9ff4ebe725e3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:ac1f7eb9e97e108e8a0d7392b81a157578446b2514e964f3080816f12a45bea3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:80635fcd5c0eb268d5e8da2715263eab16800e77c3e458792f0f96b920723c58
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:2fcaa8a4540bf4a18761a145d3c3522fda001d254afc14fb146fcd1b4c68d2c5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:a68da01464b2cd6fdc0904b25419ffdce3baf8d9cb398102f19a7b07662e67c3