Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

10-alpine-dev, 10-alpine3.24-dev, 10.1-alpine-dev, 10.1-alpine3.24-dev, 10.1.2-alpine-dev, 10.1.2-alpine3.24-dev

Index digest:

sha256:d1eca89413abda432f3f669ca8efb8bf72a6270d54f0c08dac53ff67a3586030

Manifest digest:

sha256:e6f127476e6c73926b3e006d169abc1351f69e278057607926eee1b752e69c44

Size

372.86 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:ef0af05f9eecb6eefd3f18398c98ec18d62fdd3df4ebe01f7dfa2dc81714e9cd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:8ee2fb6448aef413ac528c464b554929a4587ebfbdbc82ff5728415dfd616d92
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:aa89525fa6b1030d474977489aa29c950ea8147edf8d9c1c1d5992c2c9e20952
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:6a1198439c99f9d6182527801ab8b7dfcca41c008579dd996bca1fcd099db20a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:e4529da907cb1b7314fcd3582ed1587c9ca1b5f09f8348eec6e7661a7f4838c7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:118860ccba12be9fe209f49b64a9410d37156c39a2898f2175c0eafb75e06733
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:0b99f89edf9889507993596f3376902236006563eef447f18dba842fe8bf5516
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:fba7da5d1997ddf42e609d2688c010c54b13e9bf73cfc417d33e44ae58ae527d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:0ffe4b1f8ab6213711d58c70c4be0c9174070de277bdbc2f14f5f17e82274ebe
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:694063a718519d95715baacb49ed268216946af8d7da5287ed246331800f422d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:162a33c6429709e458d0bc57875480c2f973327c16c0f444845d53eb8b6388c9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:9086d79ffa7ea32c8f92e32f2785b8c2cced8dd53eedb7bce529df57117183f0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:3e271ccc768b1fb473af11a3938f51bf71ede9df572c22cd12a396f8ed562faa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:f547166a9b1bc65ca55559abd44a12aea3a31de3e153be220bf2c3b28360e122
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:95d5479816540edbccfec705141ddc264a7a569ecbdbe7c67d958a19e2fea307