Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11.4-debian-fips, 11.4-debian13-fips, 11.4-fips, 11.4.13-debian-fips, 11.4.13-debian13-fips, 11.4.13-fips

Index digest:

sha256:8348d1e69b4abacd950749878883603bf208d91dd8314947d9eeabf5c74f9a6f

Manifest digest:

sha256:cc26bf1df1fdefe6ebcec9ff8ad6ba628b380a262218066f53d014b95d1f4845

Size

166.95 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:f0fee45988131d20ef1c4e9991c89919c7a1eefe55e468192ebcb02a56a3d122
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:4a4b26969d6d85a474a6a3b143f336e991b927f21079b3ead1a987b274b67524
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:0eb471755d78823007ddfed9d508e37c537cd42d40cff4676eb3e66422d0dfd2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:f6cac641ec0a5d14400d4e491a69700adaa9bf749330a6125adaee33a255d160
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:2f4dffc1ccd2cd6081c79ec9a0c230165738b9b9d29025ae5b99f18fda4547ba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:6a0f96393ef7a88ce06bbf03813cbbb857b5852fa04791b6ae238394bc7b68f7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:e5895eebb1509e55f2f90dec289f25f4828ba03f2fef48cef6d1ce43b0235481
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:3e256efc46e0371171bc0e4d1a6679108c148057337ce6c50c2672252d773d3a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:22dce8e0648a5da334dd978468582d40fcac9a026386af4106b9e3309d4a055f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:5b79c510d12c53182361b3854b6738f2d9f569fd3fffb66cdbe2967204ec8858
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:f49f18f3905ee7bb81084bbd9ec401f88a1c3a7724568b9b3fb6d567ce13dc2a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:bbcfee17ae00e6f2b984c3fadd64b1e5d830d3aed585f7eac5a3972d4f04d875
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:00e9218a0eeddf569bc1cd0b6bf051634996f36d92e18f12b91823c709319393
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:83111af927758c82bdc1e6dd0e38ac4aee9352e70b5aea3602d60ee358451477
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:7585d01ce26362b7da5c4a843dcd1cdc247d3f530f04078c1e9f4243727b5194
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:933bdb5ffbc74b50bae3194e1998479ce3234ec296068c0b62e6743ce4956f4e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:042eb94e217111fba0660eafd555cd701efa96981567eaf6b189026297e77295