Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x

CIS
linux/amd64
debian 13
Tags:

1.19, 1.19-debian, 1.19-debian13, 1.19.6, 1.19.6-debian, 1.19.6-debian13

Index digest:

sha256:f34aa3ccebe879d976bbf09757f65fd9171b8235f901d7a1b551a671b3b9ca6c

Manifest digest:

sha256:c77e3d2ed7d858ea3ab61fc9900e3699ab236c740aa3992c809e6c96825059cf

Size

93.47 MB

Last pushed

1 hour ago

Vulnerabilities

0
3
1
11
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:04a4177f542839b8c843c66e2b97585233aec7f2defb4d1c31515d7c87778c87
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:1248024f6db9a258fb752ea3509fa621deb1edc6f123a6684706ef93da1a1daf
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:efceb461248a8b4a1bf4c14358ae2c73dc8712feb702eb08b069db9647534df6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:1f931108b8bb50f559b99be9d0938d1fa1fb152149bef1544c93037bcfc5bc47
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:1ac8f66c0529da6c6f5ca4aae60c0f18f0e4bed3f4971582b0615f4c5921dba6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:fade977cd8b408c0f3d6e2d19b48b52b8a0cfc4dc444431cef07f55f69d9f0e6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:5c1b449b37b5dc2c729631aca39c4237cc65302909130ca0cd731d87199a7a51
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:62be150783e34a552ca01c86316420d3affaf509e0c6fc65b5d9925392a6ce0d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:f6715a16786b6332404e21a644197a56a9d0b41189f13189769f166fc2f4a4e6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:535b60e6f628b86e537fb2dbf6907e4aa0ccd0858fe89cb892d78e023383f049
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:e8bd5d28d9c684c26fe564780aa603d46f6144d42ddd967ce4d07b8956962cb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:b2a8c7ecf2de1ce5942cfa20d1adac93b2fda425a6128070367e658ec195dfc2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:d188761e3bfdb492d5f1acc216abc092a356436c9bf2c553502f0ee096f36203
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:c146d67c3e260a063b4b6701734529faf4aa500438ea2955a6a788cba29103f9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:06c4ce7d2193ba2eae5075dfcd9354d38d351a6a2d2829205db66d59939fd1f1