Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (tools-deps, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-tools-deps-fips, 1-debian13-tools-deps-fips, 1-tools-deps-fips, 1.12-debian-tools-deps-fips, 1.12-debian13-tools-deps-fips, 1.12-tools-deps-fips, 1.12.6-debian-tools-deps-fips, 1.12.6-debian13-tools-deps-fips, 1.12.6-tools-deps-fips

Index digest:

sha256:fcf444a267c1ca14a97117d201d5f01b77dc664a5a84a945384b26725304f8d9

Manifest digest:

sha256:de2b38dd16a86ff682591c66af04401057383ab4c3b05e582738f79b56e43f55

Size

95.62 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
4
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-tools-deps-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-tools-deps-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:a39009c6a30da74e2b4d034dfd33e6cf368a472f4542c46422d7b7226f918bd7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:df4232d0f7e72bf790307c385c1435990093fb907800950b5e5a939fcaf40cbe
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:9e4e36fe084254496ee4f28cea229bf7e87dfc24a753d0f979f15221a15bc4c0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:34107bc51dedacdedb53b859b05f62f741cfcde073b01713269946a211c2618c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:798cb5dc7c7f0d4fedf7f683056b41b31af399fd895198baa787a77bb8d1fd2f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:0bf7310eb92f2d9b700b94e0f31102126f41d06855463ba9219c824fdbc257a1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:a612d09da34e68a5caab48dca95bb642c800e49dc95bd672ea3cf86859307f28
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:807def2fbcd44deda32af1e547a3c97ae47ba64693d63ec2bee526689b9db93f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:9038ae8affdd250b91ac4743bd7beeea8831b2effe39bef8ebf237dae4a9334a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:ba3f79c8f3dbd4255b73da4babf108cc59444ae31c21e3997cab581dd3a18348
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:6a6e6b23797c4d7df7b591ab250448018180283a0aa965e34931b7a9dd4f0794
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:f59f16f06ef1c59b7d69819570ca34370be5d690ede314edbca83728ad84b301
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:e3fb8c6b084c0f5e80ea7bccca0955a6cea334028202fde54390ba5c47b9693a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:722ee893d58db866c3c86b2ab7c4096cc2ebfcff984bcd481b8223a23e8e8d80
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:b0d23e365e98492fc5038f6ab3043ba5f705ccd499fed2c50cc36dd9cca3e07a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:98a87160dea0e7b3c4de0207f17f77090aaa446371a7bc56871735016c3a694a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:b9c4d3e1df83b93c027bdc9d0257551eedd436e4b9f5fee93b5f30e4c6641878