Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x

CIS
linux/amd64
debian 13
Tags:

11.4, 11.4-debian, 11.4-debian13, 11.4.13, 11.4.13-debian, 11.4.13-debian13

Index digest:

sha256:16a299055bd25aa72e500e97e44ad0d147fce4d431cdf638d14e644f0aa90eed

Manifest digest:

sha256:a7d4c57bfc5f1e50ef08fdc5bb071343d257c160e221df3932c49d1932582b49

Size

88.19 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
1
13

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:43d2f7236365faadab7dc76622aff7ec51c784e047458c9750f19d711fa9b7e4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:5a7240f29e46ca5ca661371ee5ac0a8f5c9a6ba61f7d131cf4998f554c9e3525
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:d3ffebb33904f25d16ed735107bc0823c67c2062c80087615ab4ee8e2af7fcc3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:1820282f0ad8bcd8e26a406509b3e1938377b588ca78b2077c45769864bca0e6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:ce2b8b016d275e034b1db4d45d12deb1fd5a8deb181fdd99b9d849e4a97ff090
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:5f82918a82ab03c814e38be6acb52ccc98c5e6eeca542917e62815c0793aa7a4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:78f6452493c78693ce0175bab2aec46fba4426b3bfad026d047321fcf3196369
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:029ed358c8c6c13955ea659ada423dc5b8e55b27c1104d319713c94cbad654bf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:8c5be7ac2bd9c69c9f060f2ceb1bfadb623d6a2acf9891008dd30540623b6702
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:653c25e3da7e67d1064630f04a3d593676743d85594c75d63e6b42d7b79e0e9e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:c040dcf9b987671f250a8cc642c2c502360cd97d4307647d51b4c01559c04f51
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:9efab6875fbe95a5b187f239f7686e561ec131e59ec95b374574451d484898ab
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:3828fa0fcaf57b35529e0f94a6a48849dd49691454b7ed801dd60376c9d3eb90
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:6f60efeb8c20c7f8160d848d319831e023404f6b40b060a52433806600076b9f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:9e040c2142c047e2a8f1858a3cd4e8f8bcbbeb67edb613d6d877d1f4a3e764ed