Sign inSign up
Docker dind

dhi.io/docker-dind

Docker Engine (dind) 29.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

29-alpine-dev, 29-alpine3.24-dev, 29.8-alpine-dev, 29.8-alpine3.24-dev, 29.8.2-alpine-dev, 29.8.2-alpine3.24-dev

Index digest:

sha256:cd4d01dec72c0a791d1039eda122c31743afaf8a2c7060c50deb193175266078

Manifest digest:

sha256:72101e8b629bd2ed523f68dd90f2386d5ad4f3ea13b71dde1297b1e005572390

Size

102.63 MB

Last pushed

18 hours ago

Vulnerabilities

1
1
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/docker-dind:29-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/docker-dind:29-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/docker-dind@sha256:25c0f34da696a9b5c58ffb3b4dbb3338a6cc3454ef1f75daf6eb545a2a739df3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/docker-dind@sha256:6c8f1338f909a221f0a48656f07d4d6dfc8bbda0ab2b964dd2d34185bb120dfc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/docker-dind@sha256:5924689f6b2aaa51cc0b7afd15d651566a13c2d5f57feb96ee700407880c5ae0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/docker-dind@sha256:df024ea3feea0e2294a062074290c89d9071024c21fe4ac4c088cf8971ace863
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/docker-dind@sha256:6bfd8f59d00ea8575f8ee9649f3535ef3794e398b5a4a0b8e0a310625b8f65b0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/docker-dind@sha256:1b37dbc0b20d438dc5d62239b34fdd28a6a51cd98b93f47978fe436e5e23b377
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/docker-dind@sha256:ee54cd702180f397b350cbf5faf99a5425990e2def43891dd5188697e6f21c89
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/docker-dind@sha256:219b0c9870b719aa020588358d7d65706776686e65932afdbe99d15b9c4c5386
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/docker-dind@sha256:24e2fff5f6ce42b6e68249edc64421ac816686423daa824df33bb1eabb352b97
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/docker-dind@sha256:addd8ba7dd5e444ff43e7a04db39d07369cd7483c5a5eb5974ff874dd57975da
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/docker-dind@sha256:eed826fb3bde84ea354679518e318f5d1e2d2cbe067767ca747c3e2348ad2249
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/docker-dind@sha256:b8bffac755fe07327e150309fdf78c7ee9fac2f3dcbdb36e2cb3719ff4263c79
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/docker-dind@sha256:74355774fb70e5262ad716089f352053acb45dda1d588e03b9636a0294655538
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/docker-dind@sha256:8b83791f0dfb3f2471b3bc53b087e4fa9c364338e873d0880fd988212b9ae958
SPDX SBOMhttps://spdx.dev/Documentdhi.io/docker-dind@sha256:c45f8e063e77e9d6f3e77f88058260cbf8867171bd68c606efa63ef65c2b1441