Sign inSign up
Erlang/OTP

dhi.io/erlang-otp

Erlang/OTP 29.x

CIS
linux/amd64
debian 13
Tags:

29.0, 29.0-debian, 29.0-debian13

Index digest:

sha256:b71b721ee0f329430ede3778c35693758533cc916fda1f7758db699774a9f050

Manifest digest:

sha256:1f4804d34a0175346b5441889a23adb75d8ec3984a82545ef7554f141cba6cc4

Size

77.01 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/erlang-otp:29.0

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/erlang-otp:29.0 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/erlang-otp@sha256:3b35fac9d35c2aa5ae53ba1497532c8d9c957caad4c9e22549656dbca78a84bd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/erlang-otp@sha256:634d97b348a0fa9759628f9146bc143c59195756cc50e6d194774e3ccc404355
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/erlang-otp@sha256:c6f22e99437d613ce9ee2a3b40d810f8f370a9c3b764056677ffd295f46a84db
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/erlang-otp@sha256:b80dfb6ed056236afd62d666f7246ae2b5160b61ac5f5c95938ac6cb97364360
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/erlang-otp@sha256:52c3504bfb3b827d43d56003452daebbfef17a9271b7749c1fdd8f7f477b27a6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/erlang-otp@sha256:dd3208cef1eb549c0754b5b79acc88d2974714ab5186ce8a2585d276f5cbd321
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/erlang-otp@sha256:c079a74b33827d84494e78116378d9111e669b81e9d85c11146c3cc1112a1ce5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/erlang-otp@sha256:19aef1a86e217d65761fbcabe1dd7919c3b40c59de9abdd5aea62dcee128fcb6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/erlang-otp@sha256:57e8e57e07163e5261a8a964a7c0d3eb877108cf8fed1f09f862617e59b30da3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/erlang-otp@sha256:353c646b50f33cd4ae7e8c6f160c09c3612ca2185a0ddb4da0d4a415d5e93e4d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/erlang-otp@sha256:66642087dbb9d3978e012086fca93fb46f05ce00d82470d229a0044e04d98f04
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/erlang-otp@sha256:ab3f8aaf89fd493c66767a869a35d5c82505279b49bea6e0b6fc5e6ad0e47f8b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/erlang-otp@sha256:80b9c7226e3ef9ebf917f2fbd511b93d32cee17d6e4fb9fa6aebdb62e18a0359
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/erlang-otp@sha256:3cb0a4dcbab2525c656a03acc052dc3624cfacdd726203f5d31b4b19438f2771
SPDX SBOMhttps://spdx.dev/Documentdhi.io/erlang-otp@sha256:6dbed4e2b65bdd82ab6d006cafc2e60835047cda4caa283964f659bc96de35ee