Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:705a6f5c24114683511d002714863c22936ab841b6681c91fb3b8ba781299e0b

Manifest digest:

sha256:b5f279d8f0966e974cd7db55d5230405c19e22bb9e26ea6991b1103fe57bfd83

Size

121.63 MB

Last pushed

14 hours ago

Vulnerabilities

0
1
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:f49121885d5b3d311bdb8a0ecdf86845c4371ddc28c08413e905a647e2e4cdf1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:816f749b2a3ff90706cfe0c13218f4c4cccb5f399373c11346a9852a7bb5d568
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:22e1e122df8c10ca0676b64cb8136bc48d24076329ddc4f18970bf4336f2e039
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:a1a893f5de6f9f4b44371a88292d48d4d31d7aeac807fcaada1b2d5bdda78406
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:235c374ec3ce04776ab3b51c9eda35fba3fb634181478d387af5e9b22256586d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:2abe7e629b386c0445b00057f05f969cb78a9f45a4fa2566c33e043b48c00dae
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:b8dfb9023004b5d8f7ae5343bf5dbd48feabd831da12167c5cc2ae332140f51c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:11715ca0ec1475ab4e3e6fcc8b9f85285864edee560f6474a3ef400a9d6cb76e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:c0d60e0fda430b6786abdb2c7f13eb6ab1e88688cfa5ed051658073f685aeaa6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:ad42db2c98cf4ed9489712ae12987c23d599419180bf574c77b12a4a4255f9fd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:4d7f67f496279e95a512a7c72940b22a16d18c12b198660a14d0f0873db73392
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:a22049cde2e787c78450cff160c2b60e45d610976d362e1b3574efd93049a8bb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:8fc3d60bae4f8eb89352c7820b7570223c1861bc3045718fb10cd6131dd0005e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:2c26791848c6c1b95753507d61c3aada9ca84b9eb9b9cfa4e498e12fbe794b3a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:cef1fb942a233616fdd1d8d40469ad96a6e155158d86a301432501d0f8853493
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:9260ca96551fa66dc86f242c1d07df62e17649880ea9974b7aab733de311791f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:8d15771ee2ef3a0e3f03460a45987a0c7910a07f046c2c0ef1c1b2105abdba1c