dhi.io/elixir
1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.6-debian-fips-dev, 1.19.6-debian13-fips-dev, 1.19.6-fips-dev
sha256:7ffab7ee35533a5defc1965c0f8f99b579598971f6e2b6a0787b9262c1a715f7
Manifest digest:sha256:7390a937b6fd5e8231e053027bf7f08e8ddd15b761f2c089f02284c730f94619
Size
107.80 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:1.19-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:e892be6438e603c4ef63562f2188629693412b1f0bc8217e017957200cb5a557 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:0aa1b03bd2187426fc5ec7dbc19f4590b87a60e0eecece28b649326784676776 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/elixir@sha256:e73d6b1bb3e363438b758205b8cd86507f28f1f2de5094e6287a830c2011cfe6 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:e9edeac4b08ce36f5fda291244a46d647a4008b3033a3890a224e7b4c941f8d1 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/elixir@sha256:2a6b309d836ef27e8cbaf1c373aba12da96afb7402ebcf930dc58b5440e4aad9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:03cea3e6036036a28cc71cb634ac1c43b86b0e7175f425bcb4defbe6b4f1ee9c |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/elixir@sha256:89b894c46ab4ceb5f89c6abf2017548afe1d506837e8fc9da6c7f9ad9ddad0c8 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:04e6da40c76449bdf288e2ae1663811258a7caeeca0f64a6af22bf6123f80512 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:4e7a2d4337d84237f1faaa8b5c1961c213ea3d723006a3d62db9a92a8d3ffbb3 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:d73f83ade018cb4da4c2b71e67446f7fba003aaca3655ae116ebd18d6057d198 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:b6029c028b99f340df0ef3d47cdc075d7d542ede7ef612f709bc1cb0b6246055 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:c9b3e7495350ebbd09b4fc0241746cd8d457791c350a2cf302def158c275e295 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:5676964e130ca73b8795decf159cfaa60240e825521e76a7cdbf55161e4b145d |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:3a5d864343a74451a25cbd94502122bedffd69c08924dbbb0ded1b026d1f3673 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:e33d36d81d72216576a3b84602b8ed64a0f2000dcdd65eb01008a8f4e554d9b1 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:9cc8d927af384253a6dc07d55e7e24709bb0fc3c47837c30d254cc2aab7eac89 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:10bfe5b733e8092cf6d9ee3cca13687675dcb737c406500dc7dc9481e33c5d7c |