Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

10-alpine-dev, 10-alpine3.24-dev, 10.1-alpine-dev, 10.1-alpine3.24-dev, 10.1.2-alpine-dev, 10.1.2-alpine3.24-dev

Index digest:

sha256:e8e7b7d1efd81e855fe857c7d1a3e3f54d8aec717d67e62475ac265991d5e9b5

Manifest digest:

sha256:ce38a489e3c91d8364738bfa3eae2cc6b173de011e5b8680b4ddaeb464a7844c

Size

372.88 MB

Last pushed

14 hours ago

Vulnerabilities

0
2
0
0
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:22d50b62875ba266f315278284b6e20168d62f695e8a32112d805604e53c1041
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:f86137bfe93f29900ed620f5f2307d55ae0b4143b98bfe099ef8328d764aeef7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:6ddc12b3a5d3060235cf66464d15e99e4aff10d7d185f44b011f1d2efdef6374
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:078f53376a6e2ce021f94530eb69034a85a1985f26f9688a589507beae17c342
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:415b7cb98934ccaa31cde439e7d8f3392b7e29fd2db04d50522b18f809d4ba59
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:8a166540265711c55e0b95689de245c042618d04134969ca227b4cec6a6beecd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:229bf6e7134b273b563d1cb9ce9552cb11a34581cf709201a3f22a8052842f16
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:6787960b9a54eba1ea62d4c332674849598601977a74b079a012f4b5bfd3823c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:43eda274d12ab0d88d79c34e6e660d526ffd5e72efad13c1685906feedaf8657
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:54727ebf54b7b0e01707cc4a7f7a5b6b3a4f07bdf5ea6c3397f20fedb9459352
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:3ae7713c9e7b8d890fab91a547c2a891711deaf28243de32c6063a267eb2b65a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:3361eac1754bad8e1342860fd77ae3e4c0eb154c6ae6c0c544d851fe0c6d150d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:e8e922622054670f3c943981b407730a187343e87a6a9ed58a27c221eb48a452
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:2bbdff3175302a0d2af04ba1ff8f2e8729a6886f0d9f87cac7976aa627a2b0f0