Sign inSign up
clamav

dhi.io/clamav

ClamAV 1.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.5-debian-fips, 1.5-debian13-fips, 1.5-fips, 1.5.4-debian-fips, 1.5.4-debian13-fips, 1.5.4-fips

Index digest:

sha256:0d345a8a5795a36b79066ec8d7d932b4733e8966280eb37221539de563da5ce9

Manifest digest:

sha256:ff63a4eb45d729ede6a97ba40645786d522e64c1c9394fbb5f2261d0986de30c

Size

146.14 MB

Last pushed

7 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clamav:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clamav:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clamav@sha256:a34c7a22154f6cc6fda2f75cb8c5605bf424dd5808257a9ef84b5a472b163016
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clamav@sha256:236264fc6179f085fe83e2581c6310694fc570ece60f1cf46d2eb7bbe6cd758f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clamav@sha256:e733e3310c043f6b0cdfb4543c4cc569f6394e32e21f57e7c33080d0b218eb79
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clamav@sha256:3ce839c7acbc3926183a295c8696c1f99a56c99a08163b0f8136fc423b3b7ee6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clamav@sha256:9a5074b1620cb6c6604fcd39e4431f006247defccaedb5aeece668d087161ffc
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clamav@sha256:de3301fecfcba9e79064113987125056b15fdbcacd4c49d4ca9879337c7f1cde
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clamav@sha256:84200e1722df2db971d0ac88bf3acafe8e5553c2118061f80c7721f5ebab7f11
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clamav@sha256:633ed4f56231f72522ff0924e98d9aefdfa01b1e40a64e205574db388d59b005
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clamav@sha256:33be77e15f3a47c1097e6fcc6e800ee87367b051eaa1404a9b32f4e28aaae208
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clamav@sha256:276877909187930a4434d53322ebe7b265f1bd65d39eefac0378eec38385f3b4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clamav@sha256:649f662428171c186c17650f56641b5025065747bc422a2f0b622df1d28271d9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clamav@sha256:156bc73456403e34ec7d0dba2641346404ef249c3ec14c7a02666b970b182f0b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clamav@sha256:c368d9ebdf6583bd46ba359e1ef9ffae329a6afdf03a3d9593451ff21ac19a45
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clamav@sha256:baf14917b6bbacde0dd5c15e948303b1666e79fc788af1c25ef85e57cc2f4a4a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clamav@sha256:2ca65a372df8b63b0c641eee9fd3f7cbadf5f02d9d18f83002d36f54f971c941
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clamav@sha256:dff50c1235ae277c5ccd7723c90f401d2cf1c23584e88770b0e7519789748b58
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clamav@sha256:88eaf8b6fd6b9acc9f5015a5f3b6c598cec31bc58b1a11961cc7b36a66cd2c03