Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

11.4-debian-dev, 11.4-debian13-dev, 11.4-dev, 11.4.13-debian-dev, 11.4.13-debian13-dev, 11.4.13-dev

Index digest:

sha256:d757b7836aee68be3157a86fcb029a8ff8e4ed0b7656bc85d974a75e3117e43c

Manifest digest:

sha256:f8f916457c4a1aeabe70c4e06a687a5d15c4b6331574b2309452a6e4a5df636f

Size

103.24 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
2
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:f5e823d5deb1578361515cb1654239f3138663da79f81f16d5d2ef87eeba2c9c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:8611ce09c88c696f7a7ba6d5ad1f13a97e3af0e9e61bc70b8eae8b561173f02a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:d863c2ca2e7518e585d18f7c7cd7b0a8604d51ed3cf9b18c55369451c744da97
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:03452bebdb23df8f6784266b945152bed673e491b9800603274d8b4b151ef748
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:825bdb8b6428bdd17a51a698dd27a9a4d50c8f1739fa6121fee79a74334f44cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:a4b09fe626c34310dcb7a0b3ba2970a42c0b862def205c4fea619c31b90a28f0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:b42164a09c500c822ad9c91d17d228d4db425f3bc53c219e1ed81d3c0d27691d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:a571c8bc2fa8a1ca1827eac61b83219ea4f99d46abb12769d3d34110e7469b1a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:0296de7a199fc07cc05076ebd760ba66e8ab689c8288bdcf1c8ba0ca8265906b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:d63a6a95a0ff2d90c647b4b535d5c67e75a91c03b30715385524269700933646
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:53f432af1b00285f9dc4cefafd7055800ce73f73f78e8fad0891a548b476cfb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:29c1194bb389f8011d4b7dee944ce38bbcaa44a071462cc792815a8cb777de51
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:26b5dd00667f0d0ec8dfc1efd8b4287720c33453889bd8293390f35ab1a4820a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:adc670cfd9fd1a75e52d4cd5194f9698c9f06d58ede95b927ef1e26d28e68468
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:5f89d113d487562879bffae593927b6c6a021e6a66eeac9d9f5e257498759ede