Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips-dev, 11-debian13-fips-dev, 11-fips-dev, 11.8-debian-fips-dev, 11.8-debian13-fips-dev, 11.8-fips-dev, 11.8.9-debian-fips-dev, 11.8.9-debian13-fips-dev, 11.8.9-fips-dev

Index digest:

sha256:b4fc7c52e770321bb7a954a62f24c263eafc821c9a3ab0d6f7235f8fe529234e

Manifest digest:

sha256:a7c50ec0b34bceb02312bc955946e333f4a7291afe8308764bfbf7262929374d

Size

103.72 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
2
0

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:0a160bb52d23c342ca78c4da60826f2df32cc2fd3e3ca1d6cedb268cc3628504
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:c76f4797d472aab007fedb093318a6b8291115a7c930cd481d9af52868161f2a
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:498f6a263a80e679084cde09fc5ea10f82f64d08699d989e2c98eb312fc84936
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:47fc3473d90ead89240522524bdba22b477b1be561da2cd52f65bc74d22263b3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:74e555e050e74f451cd7729a7fe068b41010d924d5f49bf67ff26934993b21d5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:3515a2b9c020bc4fde2d46220eff86cdca035c95e7ce83097dc5ac6f0afa7232
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:fc778817d8d6d4cb9d6b83d012d803d3e8af16b28a2fa4e361dfecd8a6127ac9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:510b0167db15d589627fb662798a9e04a1a82063f95f1b0db57c7e2401ecfc3c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:52cb7102a96871034c90580e3cc4926a4cd4c74a4ca0ede0b49a9d15c230a4b5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:aa6b30d7a4fc8355d96f669fb10ece5e3914ec472f93c67b5ff4e157002fefa5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:bf4b5c54fe2988a7580c49a7ec5b1b209c9270f40ce959be2d5590d3137750e4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:c9ed928931e5d41d2f3866ec0309e4d1aeed1b6f22be4effb5f35206b242f906
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:f093cf247e3f3312fe4df05d8066ff605aacc48f7ca38a0b4a0cca082ca70871
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:20776b0ac657eb80c6a47fbda03b49b31c8b253a91dd08ce65a744c7807660d4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:997989992df76338614dcd1f4b70c6c529861b851e04e49c1bda93429a261654
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:70117d6de10a86e69ed443cd1e5d76a03efcac28e535f4aab7dbb27a22812c1b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:bb5edc88eda72da1f2ac7e9c7b8f7092d80804b737779c8286872aa3e4a0655c