Sign inSign up
Kured

dhi.io/kured

Kured 1.23.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips-dev, 1-debian13-fips-dev, 1-fips-dev, 1.23-debian-fips-dev, 1.23-debian13-fips-dev, 1.23-fips-dev, 1.23.0-debian-fips-dev, 1.23.0-debian13-fips-dev, 1.23.0-fips-dev

Index digest:

sha256:dd83a0df5232989ad114585f355625cc823565a9627dc1aacfecd9ec4bf6ffdc

Manifest digest:

sha256:bd73b63d3f2d5db466b766e33af856abee1e580f3d3eca75c0db136322737628

Size

35.21 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kured:1-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kured:1-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kured@sha256:dc538a2ebc31bff27f583705448f3a8040fee6418bead311adc5a8f9442a035c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kured@sha256:474271250a03f03366628821215b90f212816a927a881e660fddf9257182d995
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kured@sha256:5e8b49d5a33bbd821814721212dd6d35854dfb1b7997c5f61e6e350e5ab02cb0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kured@sha256:4bcb79a0e1e57b36d99e28645194c237fdf716f779725dce6525ee1dfdc46f3a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kured@sha256:cd39e8c91469200fa8a22904781f87f3e65e5ac4c5bdf233f5829125753c08fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kured@sha256:a53382b4e6afd1b7f3756b7c3df651fd52f29f1a7c7668d8b6db5d7f26e2e87f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kured@sha256:7f84aec8b27a07d6ede06ba2f4fb78c011a14436d62f07b9e804f872cf56a74b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kured@sha256:b7650ac2b116435a0467d6825e7c2e433e139d3da9ccef35a57403199f051772
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kured@sha256:fa9360aeb6382cf7c18e71b5aa260d8ae92588bd7b48ee710279b5c211fae497
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kured@sha256:f9d28d7a2d70f722d808ffb0b135db370d75942bb2545ab46e02446070828fc6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kured@sha256:885cedf03b065c36a92eee037502ffb94ca0357489dfd0c0e98caf800807b3ed
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kured@sha256:ce4b0bc3b77aa976cc9f9f3b1f56636bc44f26edbef6e67532a06ebab235f435
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kured@sha256:4885af8dae6d9d2ef5318a2ae82800547729d5f4bb24bc62eec343b675e631e1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kured@sha256:2dcba5f1756209a3856cc90322220225052f4b93b492c9c04b78272f892d3fcd
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kured@sha256:6da6c14fd79cf17f17c7479e0b8245ae2d580896fd906f1ae5da95c3623f0115
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kured@sha256:a0c27d0a70a1e031c0e96970db121e25312c882c13cf4a3a8fb82255d094b027
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kured@sha256:59d2a7c088959cfff202f35fa98fcd9dd709f29f6dd0ba0e03295450fe774d18