Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:d44ca8481797a2cf6ef0273e5eb925005cfd3507aecf155137208f10e28dafd2

Manifest digest:

sha256:ef9dda9728446a9f490df37e8b11293e5273a3df1f2a5640a84ff4bd8a0f98da

Size

121.63 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:b49a3bee4ea6a2effe97b72e4bc282db781b11e5fee8e1e7e8a2d5580d45b9a1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:fc4cee8c06f7caea92ba9b02dbe028fd65dfea8b093ca858c0653a4107d110f1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:5efab1b2a3ccf4c996db49b681409fd74edd8d32e0897c5d08f964200f143ec3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:5171893b54cc68c90df1c018e2777f3a50fcfe47ab31e00ec158c362ca4f0f96
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:52cdc67b16ceff65d1102343d31b493833e7efc0ffd2ec44f8cb5d54ec2cd8b3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:16eb6f3178ad2d0b0589d6a17f6664c8c02c867515fcfeadef37a404dc5886c4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:70a5e257b4032baab9b426d5ba51c32ae388360ceb4818892ad0f3cd78650472
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:07e8456cfc171810080613a509590679880f362323303430eb869e2917afd9d9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:75461d7a9a0f21630972d918a0b7940890246eb076877d2befb1abdfbed87ec6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:a18310fcd2c99d7b7c8f46875a7a0609bc4995fbae587ba53addc9a8af9aeea8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:68fa7f56968cad970ff40e70b228c17a3ec824820681eddd95fc84234b045cf3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:4471ff20a7d517643cb5a0a42c9a1e181ee673ae2b5568eda83a44b8b90b7366
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:8f48befa4fb1a99cd219108f89f2416af8c2511b7db1cfb72dfe3b3072d4689f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:816a562e221a36583e35be950cc195017368a6693aad45c2b7c9d53099ce69ca
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:28909064052afcf477215493f6a8bd6c45383fc2148a6d1c54a82c35b42fa4c4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:3bc35707728b0f9eb88623af692585001d6a87bf955804c2fdfcf6ca29cfdb9c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:4b7f29f8c1a461433050a56504844f1d8cd357e5cae48bbaf35ee8f0c71b4165