Sign inSign up
Kured

dhi.io/kured

Kured 1.23.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.23-debian-fips-dev, 1.23-debian13-fips-dev, 1.23-fips-dev, 1.23.0-debian-fips-dev, 1.23.0-debian13-fips-dev, 1.23.0-fips-dev

Index digest:

sha256:1ad0bafcdf951c4e7c91df8b8c41d9482b630fb7db5aa88354e52b78fb1ee93d

Manifest digest:

sha256:0319e25906a7416f18bed261838be61dd9de0f5a584709d6a2f8775ba20a67af

Size

35.22 MB

Last pushed

3 days ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kured:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kured:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kured@sha256:6121b7c1912cf2a117d6e57737ded8ec8fc628ad527460f3a7091d34cf690017
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kured@sha256:f4f3389e137aaa5e80e64febb4b6e47dce0ac417af70c43222f3415d676beb74
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kured@sha256:81cb21d45d28fd60e7ba5fc54b39a4762ad217787df31465d2a809e0dd52315c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kured@sha256:72e472fdf9b5abdad10927b6b79eab488a2caedfc4aaf9129c4b1b78470e95d9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kured@sha256:a534f7aacfd61d913a51ee420416991cb4ae7f11a49c959f1d8108de9e49cf6a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kured@sha256:66e16acab5600fcc470df3ddc00bb306f6ad979cba735403b4fd0f94e02f9220
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kured@sha256:691aca6ddc372f737c7d04ee840f0aedebee56a0aa3f118ea070620f1ff53494
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kured@sha256:18168bbcbb93b775ab2fcf632398e420d1cb92428ecf1ccfdc46ef9d08cd6627
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kured@sha256:1f4ae121e89a5c22e220d369fba3adb9bb4f88933d89d2cf032e3a37a70a0ef0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kured@sha256:85fe8a3b0dc829d869c03b4d97bf9d8634e42dc20f8b7ee4ff3fbca89028e8e7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kured@sha256:f0bd3cd54c9bb2df1a3182ab032426f92509a61b95d60c92798fe7754d72424f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kured@sha256:03155c7ac0a8bbaf73cfd338bfe2fe2d9b5c126beb0f3fc803c0c1800e29c323
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kured@sha256:dabb270dbbb6db13326f5b2ee05bd0d679ac4a52c6c16c354ff16e355cbe30b3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kured@sha256:e472e5f2652d0985ffe4d3c8e63ca360095746a70b088bd98f2870e51c77f6e1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kured@sha256:0c52f27b41d8142390df282ae2d1e11eb1279b4b7e54bcb16bbad9188cbe7479
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kured@sha256:255cf932daaf008dcf7df35e6019ee57f9fb3749bcf5d9228940eba6c3e1638b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kured@sha256:edbccc656cb6fe01be3794976216837b660e9366b3eb08da5c9ee3b01760c543