Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 8.x JDK (dev)

CIS
linux/amd64
alpine 3.24
Tags:

8-jdk-alpine-dev, 8-jdk-alpine3.24-dev, 8.504-jdk-alpine-dev, 8.504-jdk-alpine3.24-dev, 8.504.01-jdk-alpine-dev, 8.504.01-jdk-alpine3.24-dev

Index digest:

sha256:7b1d4477c5ad8e5ed4120c9e79a8729a59c6e6ed673d687f6e6c7845f971aa23

Manifest digest:

sha256:2409a48db06a00911e8d01cdf2cbb5fbe820a956c91ddefe7e04b703e3156fbe

Size

91.94 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Dec 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:8-jdk-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:8-jdk-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:08fd334c2cd57ecd5754bac2133022d526992b78a43f8b0b1678c53d74e62e50
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:7e56dae0480b38b7c25a078d31edcd9ed796b1c284af806d2d0941bf83f7754d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:586062bf63e0a067ca370dafe247f84622cd12a1c6824328b5282d6f17dbfa49
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:8f0710ef66d23a11883a1c5ff037d35ebcaf8c73443120080b6e060db380557a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:9a13a0ee11858aee93b768957c16e0ca3a3a0d22df1e4cd1ce4ffc9ea1f1a85a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:ce4fdb8751cae92e3d89b1f47f182e779844da54215c2907d3c5291c4c028511
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:128a7e8acbff508deef2a69ef2ada132502e4a64d49ae48500bbd8f82a346831
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:d75582996d3848cc889943db0114130346bd6bf1e7c28c7d211430522b368ab6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:18193974308948ee4de7360109c292711f567a2905d44a5037f71ead64ec20a4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:df7e465ed886e4124ab9363e468919a14d7c040f1829be7d0dd6405e4547fb60
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:e0ea5ba59b7395dd02bea5c15e901608259cdc821416d8f48505e81eeaf1ffa4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:9ee96ea59d3e01d7c0381d5630224e003947c2b9b3bdc470a0e410391389bcd8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:1eb1a987b53b73fb21c3c390b43eed4bfa7b72603fb92c9253a0312a13c67162
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:62be0b248094c49721b20d85cb8e8236f26d8848c3feb724c5843f73dda73bc4