Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.2-debian-dev, 10.1.2-debian13-dev, 10.1.2-dev

Index digest:

sha256:959a0ace1f330ed4683bd440984da0bfcda96a55db187218442743f35f43b4c0

Manifest digest:

sha256:9a95b615693daed3ce7e805ca490f89f69643de829caa729c5d62ef70256e87c

Size

368.00 MB

Last pushed

10 hours ago

Vulnerabilities

2
4
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:504771606b6bbb0c07f1fa94bb9dfed22df13dd9328fd406fa9ac6c992b9ca53
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:67571ce6e11993c32398bc103977b41aa548fd850177a9c6c56f999a68c24c6f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:f3980ab0ee63bfd0aca75c7088005b5522956b8b11154e27e1240372e0025969
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:da12c9a454eceef5aa2073604c6d069deefe7a08c3b767e7ab7262ac3c5aabe0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:f8c347a11bad3d0c691b69ecc6d3b746a88276a1787fb57927f66ea53da0d1ca
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:bdabdc47c6c938e436be59b77afae5a45c1c477c741dc3263fce1cf89c433a77
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:634eec4aefbe385dbba4c0e9a295dc201e3f613823906f13dec41b2f4a317381
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:360406b7d19099f54e942814598b08c685d37cc6e0d97920f5ee8937b37d0f87
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:bcd7fedc7c9a6eacbefe7e40ce6ee05534d3e34e01e09b2d32bed6fabeaef474
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:93bd8692e13f7e7d04cf237c6754527422601da03ae74e2553b906cc68c18300
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:a32bb7c929bbc3bb97daefea646791b68af023be6306549337b1ef16926a617a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:74399bed4c8a036a5e2290987b0e3fd2afe2b1393dbdd2f0aa847e6d71b09265
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:e59c5c353dfb76624ad0f375f0d00c10898d1ec7acac323ebbc770d8f5c900fa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:43bd73129bfb85f5760022fb0e8a3d51cc6712fdd9e7544af5a80d85f7059204
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:f57bdde921677471a20dd32916d6f198ba98fe623d18cae91603bc335a083c04