Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.2-debian-dev, 10.1.2-debian13-dev, 10.1.2-dev

Index digest:

sha256:568dbd496d1627d1dd5ab023439c9b163f7c8d9d3234f53c2ae32a26fcaccee5

Manifest digest:

sha256:27f309b2535936098ca35f7ee439fc09ffe26d87b100805db9a938f495b7e98d

Size

382.46 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:e8cea2f701fa5c2d8581c04a875596876725893133d78e5c04a682c06319922e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:bc799dce68b8a213dc6d4565da3024c7eb8ec7b475ee31d53b226f34cf92e629
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:a03cab2ebdd1f034557117a4688bcba00704e77b2ae01bf58162cd940028cf8e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:a80358a320e031b614540ba84c12d7340018c843ba851e4f2ab0dbc6af6617c2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:c08a7d87de5682ddc65145337cb0c49aacc4f902d76a8bd37178302ca456165e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:1902369dcdb606f51ff4e7bb0c0f3f42af4e3022b4052ea8fcff11e43aced2ae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:cbc217c03954bae38e1094775e802bb8b3e1b4eda8ab81d124715ccc8dec5359
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:c317e9f1ea620949ce353c40f0ece23af2dd531436dac4ba5eba7930434ed6f0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:d55594d1017ce42bb33f3ef3132a79a438d3526590c80cd7aed0c899c9fd7b3a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:2477a689e46139e34f16cf8df1afff25a1176d54f2b28caee63bc2ea3cf7fa66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:9bdd59ffb6171ea923c3b65c16e229737fd8727e3cee19d75e0b74fd802f78a6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:a29d04891e93706f546ab600ef223f19a1f010448b0076b9b04286495f5c0ce1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:29092525cae4e2f9300f048a47800299292d4f6a7b82eed095732c0c36fa8c94
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:798a90e8efb07a8981f9d50a13e6b748d1cc479e8d748b92a527927d9d8961d1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:80f283ff02d614f9a2f8125b4ed85b30c3f9055d3f349b45e09465a7c6f8397c