Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.46, 1.46-debian, 1.46-debian13, 1.46.1, 1.46.1-debian, 1.46.1-debian13

Index digest:

sha256:a838cc665df24f5a9f378d93a857cc1cd7bcbbddcacb568da4c686aa45e081c8

Manifest digest:

sha256:3a39043add90ad14e54e7e923b9fae29f32698e98dbbfdf327395123218fbbc2

Size

34.12 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
4
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:aa01256ba3e5d16228042ac09d52880032043f59b6803de212f24e5167db72ca
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:6d7c7394778b7d59157ebc5eee0252acdea4086148febbb1a44ae64abec65020
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:8f7721a411e79045d198600c68d31ca9dff27a25b2227c0a142d23b8d40258b0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:abf03ca2db556d2c7d72361d4561fa52ece394f0ec776b92dfe6d8a21b8b28ed
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:4b42fcbc03f59baf6fd3470a4c3b04cd13c3ff8ac65879a55c1806fd9cabbc7e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:f6239f214008127bfef5844ebfef7379bf9950f6635b06408ddac304697f2e59
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:e872847d745b3bd1e5064d30257c8b3fec83ab531e98fbbd4c2b24ffa9c6bdc6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:7afafe24fb8b5fbd7fbc734422ce72795d6b31af87cc1f92723eb5f54eedaf77
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:d6d21c85f5dcaf837a2b6022d95029a1dec40ddf947dde98836a63777d31955b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:ecc8587e548341054f2fb16ff60ea28287100ec787e8e51b1d81eea88be80a66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:7f19462dc99907751cf170444b7d4145fca45ba186b99b04bfe45f0800431bdc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:5f20b872cdafc320557b36ef1b9340dfa0a3dbbee6edcf59750a55c4fde27405
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:dbd7f62f121a9ae43a7d70d1af08b22e029e574fd606357974f0b25d317aee21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:d76702efe2172e1de6eba4455a24f7b4ce6e81982f7a32ca3a553aa1de23f4be
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:72d148a0d7e5219e2f19505800120916a20d0b1fe2eda6576bee6d5b117fe86a