Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (dev)

CIS
linux/amd64
debian 13
Tags:

11-debian-dev, 11-debian13-dev, 11-dev, 11.8-debian-dev, 11.8-debian13-dev, 11.8-dev, 11.8.9-debian-dev, 11.8.9-debian13-dev, 11.8.9-dev

Index digest:

sha256:bc06ebbcb1cb19d180f036f4ffecbfc7b4d379d6e2a8b44470106f62739e300a

Manifest digest:

sha256:46b42575f543716b64af984e40ec14d74aa5415fc11036981c174934c633894f

Size

102.96 MB

Last pushed

13 hours ago

Vulnerabilities

2
4
1
2
1

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:07d657fb7aa9092d9014e1005b3cbd6048cd12f50239448380bb3f6101f41963
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:482ce29c2ea4f0545cb80c992ae33de307f3f2516327334567e8bc75b51b92ab
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:8ffe6f34daa7cb74abdb18a4f8d9a15f7ab9ae9bec794369f60831f0e492047d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:aeece50d5767f3364d5833a5d76cb5cb0eb8e07978b8a6842300313651abbab0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:cd4bd409d3b02daf37e5208f863e6f4609ab7c32908a7da35090231728176b31
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:2733242ade1e5dd031cbf8fac5634862888f8ae91745ef09d999e6e223ccf50f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:65125c69188c4fb83ba00cce15d91873cfc7558065dc252aae014fde78e6986a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:d85334e103b447c885a73a529fdccc55aae223b58dec4fe66a19f02401e4873e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:e4d9f8dd8cad28031b9b49d840efd1bb16202d3b694449e7a25660d6aa017b14
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:4425f07595f6c39729eb235bb44a8a8e6503231d1c09e2918314c007b21d0eaf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:f88bf03b65588ef157468aa4e88e98a04b6df352d0d42931ff7f8a01e3647bb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:66f7a56c2644da09ccb2ccc784f6aafb22dcdae321a0ed2121e9014bd846c37b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:f2123daad8393e3b75c4789f90b20c83cf736d8e3a98ebaa4dee50f8401ad67d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:d2525c275d68459a3b2956bdf74e03ab55cb0d6c2de16423fccb84dce8e066ff
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:5753ba454d24474a55fc4c979a9b31dfc0ebca0695ec9f04b48f3827f9eb607f