Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 25.x

CIS
linux/amd64
debian 13
Tags:

25-jdk-zulu, 25-jdk-zulu-debian, 25-jdk-zulu-debian13

Index digest:

sha256:75f345b78d15c60f959149ab7e8a7ada4bba6051b0ec8c163fd94ae913103c5e

Manifest digest:

sha256:9f30867582d02c2eb12a90735b6483a0344e84b3f5c5cd7f5391e1fba5d9833e

Size

156.85 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2033

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:25-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:25-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:831c41fd1f6d233d9fde73110a11c8f830df6722e11d5315785c9c075c9335ad
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:456eb49f16ab7c57031d5413f4ffad6df9b210ed486bcfebcb5c96313d3558c6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:cfcd0e4b41265d323b08fbcc4a5f36b9a092c5d69f6307fafb59f4de660ea72c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:2eedcc7c3b3dc93f6c784f930440a6e94a77e6b7136d29898443a003586e8f3b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:06aecc27fdae183fba5a8e1ac6d212b671a0966e30271f8e296451af63922903
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:3377ceb9c88f36e9524f4851f933c3c67af94548aa2bbe60f4f596a9a2155cd0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:a92b4b2e6465dee5bde41ffe5c2df090484543284f8c56fc4ba0d7ed894d4410
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:e88ecbcb9aa28873d05098c484a72b3dd3848da4af7a332a49107e7929bf9a1d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:87e09c8b5a78b4949ba930a1e862a3a23bd835644e3f96f11b0caddaf36b0d34
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:ba868e30c670150d4c687e992dd71ff3cbf121e6f8987effccb94da2c48bab47
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:23bbbb5df44c650ce9f770b19f71d18932172b094dd4e708f01b22f1f1db9ccf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:3a7343e0ef90b4c0918c19496d871a42c6c7c070c5368598e2cb371064ab2a4e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:8c17b604993698964284e3d049b3a1ef2d2f2946a5b1244f2f1e639a88d5353b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:2506e247d143db9cdd5d506645136880758cff016655ed70de68274f4a77f300
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:135bf815b7ba4368a31ca3a7dd4413153c7afc8949d4043264f4a5480032bfc2