Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.35.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.35-debian-fips, 1.35-debian13-fips, 1.35-fips, 1.35.8-debian-fips, 1.35.8-debian13-fips, 1.35.8-fips

Index digest:

sha256:dc324c7ef8b48092c9cc78a9b25fb7108863aa402bdc9c0ddf692fe1bfef2d3f

Manifest digest:

sha256:eed5ca4a7a3dc50195c78c61d4add847e5b583bf17379584d0ca09e6656c7dcc

Size

37.76 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.35-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.35-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:a3a6f354194a9154e15aa6825178600e2ee3b45d7c4048c709d6c0ee4decbcc8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:ab1408639dbbbeb826026e4bbe2b903b309331f5eb0071748ed5e9c80af3a210
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:1c83ab210f9f38aad1bab8bfd21c45007ec4bff96f2d93a4eacedff5529e5860
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:c96862e590b947865376137cd45d2d2bb9955e13dc494db9362800371a619d83
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:cac6c81f3b3882a047af69f519074c6b467fe907ce12b5f9eb53cecf022bda2b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:1081a591769e588fea3d0277de493dd5994652d9cda2487e60f5337e9883fe19
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:a6f498b264115ca1e21397635e60fed019cc8995c6fab356137123512ed1d46b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:74038fc041b7a978105d758003db0c7c828f53d5da8e697d27f1bb38d209828b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:e589f975daaf10fb06cbe37508535d126ee8c78466ffc207f40472d41d65f165
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:3a5e6ce07ee20f39bbdd0bd83a56d689293a4e0e9dad87edd60e6bb3adcc416d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:e46c550905832ae1c02ca97447e0289ddae419c6c50694695e29f6c5d35a5522
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:982ffceabe0b8da4465a17dba7a3fd17b62f73835ae98d0c3d206b0d9aab11ba
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:11e9cb1728b1263c4bd3ed1d01b66fc464552cab61f5366f73ddf808acc24183
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:b945f9a9fa82377a1559d0f47b60e2ecdb925524e276de1dfe5e9171161f54d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:7a613254267015e51b65232b139fd992b787cc7b0d20279889b1857c5419f125
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:3f2cf4623284f3e6c2d8a10dc92c54fc301bb9fbfde02b1027bdb4b6af18ae8a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:de8c9ac588536857775daf206b40723f1976403a5308881fa9c70161bb0a7b28