dhi.io/elixir
1.19, 1.19-debian, 1.19-debian13, 1.19.6, 1.19.6-debian, 1.19.6-debian13
sha256:8d4ca3d668b3a850dc77bb31e9ed121a927dbfb8348dd6b15d523acc03f94457
Manifest digest:sha256:2a1985ad0f9034e4d1d9b76d283ff4e0ba79f3670ef29e374f01b0260ed30620
Size
93.45 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/elixir:1.192. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/elixir:1.19 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/elixir@sha256:064c92b97cbb9b744685ba7c45819b5da01b95e2ae9a3f0cb9ea99a6c1179594 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/elixir@sha256:8324fe7bcf86816df957aab19d5445b712514f33662ccc57b11648cfc9019702 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/elixir@sha256:6c06cb20cb90062cdc3459daa49a69c3ddbd3e7af6c242a847763288647773bf |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/elixir@sha256:7ed46c3c90c3e4f47f48120e46dea18d6b78b815e3bb9c91c77390c64a56ef76 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/elixir@sha256:01817c62b3af5aea74e3128519ea0e543a6676d396eb34a150dc8dbca926c7da |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/elixir@sha256:524e31cb22340cb96d70f845e8b4e4b13c6cd92ab0a538281d6c65fd664b44ab |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/elixir@sha256:395157332e1fdfbdbf69160a21357579b9d99f3df1f39771066f62b648ef7e73 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/elixir@sha256:51019cc806e1a372f2f3cb30275d0d2ace5e3c9e9117ede442e5c94a116e85ef |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/elixir@sha256:280e9e8caa429434cf5ad94c1fa8a5ace1ab8b56d510d367f9edb7fb6046d74b |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/elixir@sha256:66bc50f01cb5fb5bb2879b27d886960a19e39b2dd33c40555c4c2a50e5bae077 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/elixir@sha256:93802a97ee466201898cb56300c1a15f0717ca0c2c7e13ade8be85b747ee8f47 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/elixir@sha256:8a37ce23341b8b82ccd03297c5d818169450c65a911a6c9412d89825e7c149ea |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/elixir@sha256:6ed93bedc8817045c5146aad4cb9544bcd5c023f31d2f192591caf3122f5aece |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/elixir@sha256:c5404b8b38dc38f2a9ff3eb20bb9f946d554d0d6eba298a36c45ef84ef271e64 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/elixir@sha256:1927b67aaa1646be9efcc7b8b0e946c42a5242bfb9d4ea6e53338fd483cde865 |