Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.37.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.37-debian-fips, 1.37-debian13-fips, 1.37-fips, 1.37.1-debian-fips, 1.37.1-debian13-fips, 1.37.1-fips

Index digest:

sha256:b764df23558a8317bd4f7cc820cbc6eb62635165e7492da463936036196d5c18

Manifest digest:

sha256:02569130cbd75486ed3435b2bc07cfabd83d639f638e2c799a5e6cd6092489ca

Size

39.03 MB

Last pushed

11 hours ago

Vulnerabilities

1
3
0
0
1

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:fccf5362f9ed348c33ef090c08932faa0edd6ca99ddf985944be4fc47b195060
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:64e082ebeb541524da00d49b3a9fc38b7cb646c28251223454e104c772870019
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:995b4bab2bcf3b119053a1796a6a214c7c3a181800c1ae2fcc83bc6e781568c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:e60cf4e6f0e0f97b60b5491cfa5071214d790c89f4f25a18a1edfc9c54016ce6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:b279ebcc59aa36a3f62a311cb6c769c53d9d7fbb9119a20c77cc09744cb70aa9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:6724a3bad33bcf078785a5d4f9965c0083f64e9102ebfc8df6a7568330af7fbf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:7fd4deb4a0488ca2e89f87776d42eb15cd761615ebd316e27cdec054b70f301b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:0ab21898305a633be50acd39f6d4c7211ed38833bacb1f84c674aa51ca613328
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:b1022f2f5e431ddca66174ac0d451426c3ca9447ba3d658aa80b035e042e9112
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:415e890b8ef568ada3a122c2664a306a33c1c03e1479c1b006e1ffba03a7850d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:a667f000fb748ee0bd3889ff62b6a8fa3272fae991699e8ee8f8cbcad02435af
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:7b7740b3464917f81cf3a90019ffffe7c7d22e2a4f8e8b365fdbe9858dc5dbbc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:3b9598f949482071e75049ee5b28eaefb505c9fd00789dc44d773ade8e0fe61f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:ae29bda312da48ad56c64ff5cc7fdf392767a4619680c035bd758e04ae480211
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:c4adb7bd7ccf5c711bf7b378314422e11dbdaed0cbfd392743e8115989a5e4a7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:c49640607c25bc07e709c021408fbb1602d4f453ba15864d8ba0e60df3c48789
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:b233b3c7d5fcda360099e40456d9a7446a292b5da172dd859307af63b867c103