Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x

CIS
linux/amd64
alpine 3.24
Tags:

10-alpine, 10-alpine3.24, 10.1-alpine, 10.1-alpine3.24, 10.1.2-alpine, 10.1.2-alpine3.24

Index digest:

sha256:c5718c4d770c12870aac8f1c3d651b9c0139e5878262e7e9dffee356116dbebe

Manifest digest:

sha256:fcaacfffb0e890c06ba29ac2ae8254e683d2b9fbb8ebac99a19028dbe36402c8

Size

149.58 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:8deceed07d4291d6398a1c3f9d447ba3769b3498b193c59ca09f347deab2ce51
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:297aed4b599209b50364e9b528a5f94759b9b3e5ed1679a5b031274fd5f44e4c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:ea1540e53a183c9c1979d4fca259bf138120de962422ae4ef7ff5e92fbdfacab
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:52b2ea9f45fada82c9f1f0a6785002b6c88a708179855108795b462b844b2e3e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:6a6ad8d63fb36e390600ed7e0eeb20b8933d713c23a5d377009a03dde8753f60
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:2d277f4585c81ca0f57a65dcc0f62960c9858f3cf78a9fa34ca7e7d7d66528c8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:9238bf65d8c27e697379d75a3325bc09d70ad1d9915ba8b16a8ca61ea458d097
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:3740d02ac3223325a486e78361d77a95bf234273a2d726f7bdda309cab2fed6b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:0dc6b7abc3bfb4528156494ecf0c398e290e7f1814bf69c14c93a44d7c7d83fc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:9233f584f9d521fe479d992370a73cd39bdee848fd3df561d7ce27bd89881826
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:5612fe7a9657418f1191322e3e78ea349c6f952dd5fe84939943692be0b0e47e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:2b66ffe9d1e6dc87f56955cef3d75b6fd9a9c7fc372b61ea61b5819ec76303f4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:3e0bf0b185e0dc2ba4dfb1fec825bb9172075c7bbfd64d9967a79cb1ebdd49eb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:6bd74b8a2e0b13c19e6f67ddfbef179d39534fac3c4c634dc9fc93cc69257d07