Sign inSign up
Erlang/OTP

dhi.io/erlang-otp

Erlang/OTP 27.x

CIS
linux/amd64
alpine 3.24
Tags:

27-alpine, 27-alpine3.24, 27.3-alpine, 27.3-alpine3.24

Index digest:

sha256:7e128655045795416e66b05f71d8cbd4e3c355d579365fcc5ec4a3842b1df01b

Manifest digest:

sha256:3c51c94f1049b8ddaa20245cf913e9a8e5cc33240370f3a1b9b79f15e3d30883

Size

34.48 MB

Last pushed

13 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/erlang-otp:27-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/erlang-otp:27-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/erlang-otp@sha256:29d4d8d764208dc5175f5bdcb4fe8dce500a5d7f2784ad908fe333a2c142904c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/erlang-otp@sha256:4fb1b97852e2e7a4cd53a996a1c9454f680de70d72c50bd3fc39b3d1460cff79
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/erlang-otp@sha256:59d09f4192fe5ee2d2f5e13dd32937c221fd37085d34d7ebd8a7fbce421b400f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/erlang-otp@sha256:f1e5a2c84564b1eb0b3f6d09b43292ab88d60228136ec609985afec1cf8701a6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/erlang-otp@sha256:cf443b40260cc4384b76bccdc1e9782d056144886fee5077e0bf49154e37b7b1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/erlang-otp@sha256:1563d9eb152bbb02c4870f3508a56a2b99067f455144bb3b2e354ec00f9a0b7c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/erlang-otp@sha256:9e48e1bf05d0badf2baa5aa70f2264b81a5ab7b204c157051f403de7f9d17100
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/erlang-otp@sha256:a0738aa61b0d3297aab3ece425791341ed16a7074d0bff0572f435ed437b798c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/erlang-otp@sha256:cdcfd726c5deccc550b89aca0d7409da848dc0e11b6217242ddb8cbc3c5d41d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/erlang-otp@sha256:a4331051dfedf78b1ceaa3cdfa2f8412ce47a0a0654ae79355f77b5f19f0b9db
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/erlang-otp@sha256:5208550b385fa1398de7d76fbe6bbae8ede994b12591922fd057b5f5b2b473f1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/erlang-otp@sha256:7137e427866c2cbee6d52b311c7bb4a2e3ee5ed9125671422de03cfd584cd113
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/erlang-otp@sha256:668fa5a5102bc95be2f8daecca2c97309383483bae22925637442bffc410c191
SPDX SBOMhttps://spdx.dev/Documentdhi.io/erlang-otp@sha256:b9be475b5504f0087940368a88bf3a983161aaeeec22f8f0b72b752434b7cbd7