Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x

CIS
linux/amd64
alpine 3.23
Tags:

10-alpine3.23, 10.1-alpine3.23, 10.1.2-alpine3.23

Index digest:

sha256:7c1980d00ad6ee3e51574f9d609a8f6c5aa6d729322a686c39b6e40d1b8d7383

Manifest digest:

sha256:05a7e96a586640ea49ecbe5727eaf9748686a07bcb8a5aa0195247d20d6bd1ca

Size

149.51 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:392aa3cf5a48f47f91c4b5874d5e914f4ddcca3e90e27b7b11d937941379227b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:ee635f80581372a6cd380e0c14438fc994a0f11775f13b26df2bc9b30498852a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:74de835dc5e8011e5a64159c3fc555ef1ca913954b4916b7a1e460774382af64
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:0fb1cdc978610e36bb801fc905513d229b4f6e33c0a924760636089e91b8941d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:d8f69b6902c87d1f4690540f687b8045c5e6ed123516988ad90b840904eeda5f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:f5808a3fa7437beeee1fa8e1ed074ddf39d3b69606bec4f5a0ebb28e92fe5c67
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:bcb8d41608c6270d8785ad5aca06584027035a695d28e9cfe5836195b5234aee
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:88216935ff0afb2b4849f64b6c9a55cd4c83d6a92881a3e9200c5f6f2d782483
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:f0d001c96fce7b09bb12845192cc0d00bc0c2d24c329498e8346b50885bbe67d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:36cb50c52d2e3f9a787c45f83df0682631f546e0615c67d77d7f3e057a509967
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:ba5bf29937764b3bdf7c21b5e3d143c9b0473fe3a32e114e061c7577ae0423b6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:00b3136a8870007f5674097c0ad7060e7a465a38adcda3014eaf3d02d429b9e9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:e4b55aaf85eea9805f5643c926b53dd274ebb2456638a86c5e7e4560fb33fe6c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:54473619474d8483afed5d830b7cb89e39cb00c8ca81afdedc92694be94de39f