Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 8.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

8-jdk-debian-dev, 8-jdk-debian13-dev, 8-jdk-dev, 8u504-jdk-debian-dev, 8u504-jdk-debian13-dev, 8u504-jdk-dev, 8u504.b01-jdk-debian-dev, 8u504.b01-jdk-debian13-dev, 8u504.b01-jdk-dev

Index digest:

sha256:838ea262cd531bd001728647afe2da30f146e86136f0fa9076d5d2904b772acf

Manifest digest:

sha256:b4aec77b5b77162c17b83cb1e114799d81ddc2d4fbe26101bea6a0ca9f39f2e7

Size

116.85 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Dec 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:8-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:8-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:3d8a99c9734c4f82affb8a0d1a5884398495853ac27201ee01541795d16072a7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:5990a38dde6ee0c876228735e570bb2e13b7ea7de1fa593ece7cf26a75a4d8c5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:8b6a05a7ab2665da36d38db59d3209c2e3ec2183bcef8766e61006893857f441
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:ef4cd39f01b6f3d8f5097f25f48d5aa3b87b5a6344eb1a6cc0e7878ff96c5329
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eclipse-temurin@sha256:d3ba7d4d0ceb73396ed3aaeddb2b6e473b526977779677c80536c0d056cec7cf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:67708ebdd1ddcb5a4deca07ccd9190a29130b686fc9893af2f7e4291cda9edc6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:9950aea4b4ab629e384157a27ab7731020c637036d37b716287c6d146c87b2b6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:1adb8b359d28c6e54f798d8d251801f2db6fa286996e3960cbe4cccc0c3f5699
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:b7be993023d911000d1f50fd736b692e5980b7007cf19b70a838779620f7d928
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:36d7d655e2f1655161f597071f56d393716dc9bcf6adec10bac66cb6ed8ccbff
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:d51ae64f031ef64b5403fedab18815407c7f679647a849ce282a611b8e4e619c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:1d1d9800cfaf528570d5bb4ffbeda0f24e6e737595b5ee3bf040587ddee44a55
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:ccdb740b23b13434a9a53dabbe9a5b4ffca0665f31fec31d21568d06afc74017
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:38307b5bd020cd6ccc9382b3b8375dbf89a704d6b7781abdc7ff3faf45a38b59
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:f6baa27d0f438d9901e1b2581dce9736f3dee66f4658b5d0dc60cd4b3bd20b4c