Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.6-debian-fips-dev, 1.19.6-debian13-fips-dev, 1.19.6-fips-dev

Index digest:

sha256:7ffab7ee35533a5defc1965c0f8f99b579598971f6e2b6a0787b9262c1a715f7

Manifest digest:

sha256:7390a937b6fd5e8231e053027bf7f08e8ddd15b761f2c089f02284c730f94619

Size

107.80 MB

Last pushed

4 hours ago

Vulnerabilities

0
3
1
11
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:e892be6438e603c4ef63562f2188629693412b1f0bc8217e017957200cb5a557
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:0aa1b03bd2187426fc5ec7dbc19f4590b87a60e0eecece28b649326784676776
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/elixir@sha256:e73d6b1bb3e363438b758205b8cd86507f28f1f2de5094e6287a830c2011cfe6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:e9edeac4b08ce36f5fda291244a46d647a4008b3033a3890a224e7b4c941f8d1
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/elixir@sha256:2a6b309d836ef27e8cbaf1c373aba12da96afb7402ebcf930dc58b5440e4aad9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:03cea3e6036036a28cc71cb634ac1c43b86b0e7175f425bcb4defbe6b4f1ee9c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:89b894c46ab4ceb5f89c6abf2017548afe1d506837e8fc9da6c7f9ad9ddad0c8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:04e6da40c76449bdf288e2ae1663811258a7caeeca0f64a6af22bf6123f80512
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:4e7a2d4337d84237f1faaa8b5c1961c213ea3d723006a3d62db9a92a8d3ffbb3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:d73f83ade018cb4da4c2b71e67446f7fba003aaca3655ae116ebd18d6057d198
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:b6029c028b99f340df0ef3d47cdc075d7d542ede7ef612f709bc1cb0b6246055
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:c9b3e7495350ebbd09b4fc0241746cd8d457791c350a2cf302def158c275e295
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:5676964e130ca73b8795decf159cfaa60240e825521e76a7cdbf55161e4b145d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:3a5d864343a74451a25cbd94502122bedffd69c08924dbbb0ded1b026d1f3673
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:e33d36d81d72216576a3b84602b8ed64a0f2000dcdd65eb01008a8f4e554d9b1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:9cc8d927af384253a6dc07d55e7e24709bb0fc3c47837c30d254cc2aab7eac89
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:10bfe5b733e8092cf6d9ee3cca13687675dcb737c406500dc7dc9481e33c5d7c