Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.1-debian-dev, 10.1-debian13-dev, 10.1-dev, 10.1.1-debian-dev, 10.1.1-debian13-dev, 10.1.1-dev

Index digest:

sha256:939a3dbce009759744a0b36664f71c7e48a8ed6df6c31da564a750d1a8baa34f

Manifest digest:

sha256:d7648c8a9897cfea8e51582d5be87764010680094de0887be2f4ecd9c227935a

Size

351.18 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:5856775bffa23f9b8a763f1e6c1b71a69903db715ce6e8570439b3c785857d61
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:c8311a532995d6ff8b7820e347219aee121a37fd2ddc4df60efcd5dea91ebbfc
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:c776dcecd17fda5b41735b311277a276ad7cfd9df4d85b97de43d695e89d1337
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:576c32bb05e1b4401050b74b28d25c6ed82227addd1d39b71e2bdb8411c86283
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:a33ad0d6d317a5122b8fc9794bf7b6fef683f1fd72eda7b4abb752a150de981c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:90cb6389538552e4ad8c7e385f259e3da1a29bbf9523b8fd9b91df1ade9a6c3c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:d66c1aa0fe5b187c28599159dd3737794b53297640db2efc2edf40b43de28dc0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:fdfb42f35a66c036e4720492c0b95a186f6f550a49c4995eb6b85c33cc011807
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:c09710ad9e34c31ddb008187d5b81c5f73200d13172b785e9a0b88e3c53d88c6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:5927fd58013efe1550ada8a0ee609ac065e32d7651ec9d89897454efcb709edb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:7f433314d062678524887527733baf463f651874b1ac14d4e3184e57ad960ed3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:8fdd31fbec21e36f4ebcc1f124ba412796e80de3580b89144a9156bfe5548077
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:1e78d1bb75c62a3e3b69fee1d725e3ea595291b50460972cbd4ea529bda7ab68
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:0ce9bec561f12810a5c389809abf13efdc2e015e9d46b1b4c44a555e166d6251
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:2b09744a6e6d1a5f5b6e70d1e742d954997d49f9a12e07d2730d5e60bd39cda9