Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.34.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.34-debian-fips-dev, 1.34-debian13-fips-dev, 1.34-fips-dev, 1.34.11-debian-fips-dev, 1.34.11-debian13-fips-dev, 1.34.11-fips-dev

Index digest:

sha256:5cceb2952163fab3b6781db3d8faec40e413e808cab1a36cef1f7ca43b37f39b

Manifest digest:

sha256:2dbfb7efbf58ef7f46f95c1a64361e1e1c19637776c9965aaf756c56f527b4d0

Size

84.01 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.34-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.34-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:11b37c4a82902f5b65f31db472c6f3f428ce94df997ed8d22709245feb507983
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:dae0791427a7bba9b3f9642ecd482e6c1aba67776d5227fefcc18d4f5b07a393
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:aed945fe097465fc86121fa70d016401d21ff539f25291ccb02d5917bae26231
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:ea82e10cb0bfa9163a16d0fa2f36497f5ca091569f7dea65a5b246c25842f3e3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:5edb78615673382aa6399ea3ad3e65fbe88feb1b3deb8481cf6019816aea2cb0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:ee46708046e035b61227e084c20d1f5fd39cbf919bc762f3b3da39dcaf8109f7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:c851eadc4f3e8ec1dafd84bc6a042c0c96705adc459afd9ff386ea0516a35eaf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:3fbf73d90a8d2af8b37aaf89357c13b73847fde20943aefdaf16418464951760
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:8dbfbd13ebafe4abd18678e808cf0a64d76ed25410a3176a22554171e2f195f9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:10fe87e61c522f1501e8ef910b5fc27c543d9b0d30be06135cd92e930ffcb92d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:bf10d5d544cc6559924d85dde431ea1785226e297db5f8a49017d45eec03c18d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:502a7a2b144bcd138f66884b2bc49b8305436c61b1c118765ac953c2e327d425
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:53187e56ac1f914888f212d09c9436723b4304688ce2b68d0b40c84350e6feff
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:9ac192d1dab2295e99253b1aa3124c8c22f1b9020a327b37100318eb361d38ea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:0b57b6200765f4fb7a39787cbfbe057dac8e1a25d9d914c6f870d72e49e29767
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:1b599a85de974da17a447f9566ad40d6c11e9da911cb528e61eb71b20c98c3c2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:2e6e6840607a1c55e7ef46161a380286174555c375fb5876eba90160e5927c11