Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.2-debian-dev, 10.1.2-debian13-dev, 10.1.2-dev

Index digest:

sha256:10e6b34e0a435e472b2305755312b0e7982b048bb9df614663a7311dda3dfd05

Manifest digest:

sha256:9f089918e9ee427cb096422f3683139daf53991764890c7e4001c4341d2d0910

Size

367.99 MB

Last pushed

4 hours ago

Vulnerabilities

2
4
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:49e81f11921b5ebe975a46f4d0c8b26dfbfa5139c470ea88e55d32146482f04b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:2103fe58b25c0339951e25934c38e43f7c3b99b6c9182e6d30d668bf67bbfc3e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:65bd94b9108dd47c22f7ef2f2e2ad3b7c1e37c196643171750d6ae5db93d226b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:719ffee3233335a7e0b61f357da4b726dc04deb0c0df854827481d1a568968ea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:e7446777e2043ec97aa6eb4c38c94bb06888bff28ca2ef0ecd39a89f312634db
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:57b43fabd7efef2cbb328e6619bfb41f3b0bf45973c7da0b5e2ad8dd3aa1b506
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:b9df9186bff47ea3622992f1509262a5c14b597d7fa49183fdcdcdc72a3e39cc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:27ff2a1b7efb2cdc4a4adc16fa030870acc31d81c19c23248a6ecb3ebf4f7522
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:2dc270c3d8a47380ff50452d6f1b471f37722c195ce420b7724e9d624ce87f62
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:4e91656790311b7a2534373c06c314b1a71e83fa82633369695bf63550255196
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:5670f7dc798bff15f954163d2688c7c3b3c1cc7b67ea74b7d2e01d088add8530
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:d0f0e4a0b51755068492140cc272d55faa8cf4cef01c5c1440f73d5e504b2265
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:dc43be1699d275d17902fd38a768ca2cbd870abc53926383126ae94b79b07ac6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:702dca177160742a7cfff163889eb0ba1df53b3f73a257a51653c6e1c44607ba
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:c8bedd78f92782f86b4b6b47fff7bf5cf32b663c086e78df150ec20e6a1f5f0c