Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.36.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.36-debian-fips, 1.36-debian13-fips, 1.36-fips, 1.36.5-debian-fips, 1.36.5-debian13-fips, 1.36.5-fips

Index digest:

sha256:2359c129a19cf8073d22ecf2a03e082f016cbf8caa19792615d0ae3e3d0638d5

Manifest digest:

sha256:3585842ed55db8baa3cec5cc714f6d67b73dac936d9f0864ffc451e0011ef13b

Size

38.11 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.36-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.36-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:636bdd4be32f70f948d683476f6a5c5cf76e8f6855f4d49031f788f137db86ae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:aef50b5a8dc7e080db357a78361906678031e97c7f7c8a33acb8e4745bfbd95d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:75f258e0676aa25f2168ace9b1cae1d245bdfa1b79ce6bbb5969323bef4c2613
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:6abf66f2c26f41a088f152fcfb73b18af611e912354804141a94b8ae55826e0b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:574f522371cb785d9264431d7bb9561206aa3cd5e1faa190a4a4ee9b69fa524c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:39883610c54e1f89d6b95dc5846fa7136dd94950a5ba4d3ed6acbc69caf302bb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:3accf8a0c9c2e00e9c203992ca9e6a1e246573e93d3e90146db22b7d46c62374
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:68992e24437d9cdeef8216f2ef7e918ac9a3506f1236570b0e734ecb5fb2eecf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:06a6e709481ef7d0717070931f61ab54f763b01177a087ca97086e2d3744e430
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:694e025044fc63d9609557956982812a7acaba07934f2384f2c2ca166799cd65
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:9ddc147a85c49d429430ba6c26dbccd47eb2d160a4a83bf61432d78090aeaf95
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:c322634dd38052d47ca294f5f56c0d38afc6675574ca79141d9ed56ff4ed4f30
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:2b8630963c5e091cca1601dce76a51e45b988fe94bf7333b651a213e1a4766e2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:332d0480d4f33e4c0c9c1a80d88c8cfe5075aa34c534e0bdda0d0d92fd5d27ea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:ef8c67ba9d5935ae889fae9cab4f4e0a006a6b2cf4ae550b15e30e757e60dcf3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:51c5d2e85af22fca006bd59b85368ec6af4a7aa218f6209c846884da14f9248b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:21ab3426018b9515cfa60c2977fcd03261f6a5b24df43a02e06096518a3e45fa