Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 25.x

CIS
linux/amd64
debian 13
Tags:

25-jdk-zulu, 25-jdk-zulu-debian, 25-jdk-zulu-debian13

Index digest:

sha256:041fb1c3052c0d4e9790cbccfb91198277727c0191057eab53cdceece0507d26

Manifest digest:

sha256:bc9cf469636cdb01859d9ac454a899d720dc9386eb0be2a70491283b08fd2c43

Size

156.85 MB

Last pushed

3 days ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2033

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:25-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:25-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:081951e57a1a1570f13ed0ab7590c6fef6d31fb255951dc1081d07112c3413e6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:9b94862e6e6850cd8ba6770baf0b1103eed639dd66ae2e5c7819b84dd3d4f993
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:cb8443bd4548474ea5f7fdc4bebee2da814176596f3bd07d6bbc77b9482a6eb3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:07568cc1c223afc36f19312bd70fb7b07f80e87627ac39fa62231e4c1c6acdc4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:5bd915a1906b7124f6223829cde44d7dc4d4d6cda216e2a6721bd80973ca838e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:d3bc52f65e9929481984a62332357e3d8cd659bcc7910c0a9cdc856a8437b3d0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:8d677f064fbe1399c531074104f32e57a45a377e2ee01f0b9711457ffd2adae6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:e65a59afd496a0783ba8d62fa0e3f855b005cfde7268d27f61842002cd891be6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:9ff706212467c847e3e6ec41a258f01664491379c9699154134d32a3f6fd0963
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:9d4452f02d55b148bc00d1c21e4554711232fee023ed23f795d4a7a30cff8ec4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:0c254561911793403e2f157747e4f5853f1e0bc0f0c0823f8e0ce3a51d6c892a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:08164b7260f2db4af95c4c18e8c104bee16cb055d3018d7d0f6dc300da40299f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:09eecf7a4ae02c343c82a7ceed77c974d44e4429aabb1eddf9f5a788b155edda
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:ff426d56e13feca8d2c9deb95462d3d4f9f78950ad56fcf4980228aa1084ca2d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:b905890d07f8cadd6f37fceab3da28b30c959f058752c6311aa6185b6088fc25