Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.6-debian-fips-dev, 1.19.6-debian13-fips-dev, 1.19.6-fips-dev

Index digest:

sha256:4a8d4d5c63cdac04efaa900fcddc8ace70ce8ebe74a2414c46fc12c730c48595

Manifest digest:

sha256:f53b071e6504c6ab4d8a7d80902e5c09547bb57a672814504bb5992ad00159f0

Size

107.80 MB

Last pushed

3 hours ago

Vulnerabilities

0
3
0
12
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:64500eeac46f6ef38ca6533b961b696bf5f2672c7f2e6bb5af6c5a4a7def6e73
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:7c563d8e9a14f335a3a926ea5fa88ebb657e842db3940b34e81d2fa7c8fdc1f3
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/elixir@sha256:db38a1ea39567e923fa232270b6b4cbfedb1860fb13d970e7902a8dcacffd217
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:e143a15006dd4d7b31d8a553871282adc63addfff5ae4e560cac090c1bdead5e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/elixir@sha256:990a22ee7f8a3394d1df1db112decbc66b3a3e19666e48d58397f33333ee70d4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:270e644228fe50b8a5962b3acb5068767076def6e9f0d5792b70794b1273021b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:b5d0768eab25db5876261010f4457f40f71ccf4cd7d627cdf49d7307ce9c8cd1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:2b9bc7a7289542d054302574afad28eed4b9899afb298d21895181c6dab99ae9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:d0e907338884687b2b87ef0d1fb876a9c092909898d714e9ddfcd637e729fade
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:b7f3eb12e87491744265b67f3985991b15b6311a8ad9604e9ffba0f1f64cbe85
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:71c5068d720f459d8aa295a64048c64055e4d4865b8b3448c8aa1ed6482bfc3b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:f736636f72638a5fb06de002cdb004020414ba9e57e91e6cfa752e4efc167b84
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:9b462d6fa4f067c574fddebe586bdc02569646c4721885fc284dc6a47b10665b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:aa08c34a02150352c2952ce61cfa60406a091fda1ae5f84b5b39e34510b85888
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:5521de5f4b96449f8134274ca44480b3ab33cf6d64253c13ae3c8598ef8df108
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:fc0933ec220ca2f5998731e29323cb49c419e06a6036e440804787344573984e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:b6cbcff7a4adcee1c0a5b3849ff742eb485b96dfa300b582116bebdbeb64be0b