Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips, 11-debian13-fips, 11-fips, 11.8-debian-fips, 11.8-debian13-fips, 11.8-fips, 11.8.9-debian-fips, 11.8.9-debian13-fips, 11.8.9-fips

Index digest:

sha256:d573c2f2b8b5edabd88907ceb3f35612adb34fbc3d1125e8446bf1495e386118

Manifest digest:

sha256:3d1747a19d9d5c25affc0d3a0207c5a5e0601356cbb6b22063daf353ab71abd2

Size

90.13 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:d74637d0caf08b7d2a173a5687bbf320ec4cb2a3c48d1e086f16c9462d71d260
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:62665ca36a1467da57cf7506d1bdf0815978c2233cf7c9efd0bb2548758bf2c9
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:79ee9bf3e2fe37be6df8aae3be26809fd130f85de3af6575aa96995100c237f4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:85aee7226977cb88b7c72a5fb7e5b650e3fbb277b6e0edded3f5cefb5f685761
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:5762841d306ec50e1ff1c3d769e20acf5755830c996e0366ecb2155fbe531c69
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:460f637f16c1b9592a2bd45cdcec9a5d9c59a723496d11a9cabccbfaf5aeee64
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:be9e112c765eebec999c2a5c99ea78218dd400e14fc5a5bd05d049751bf922b2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:d6b3b0621fec703e8e6fb0e7fa1272de90486eeed4ce24a0e861db1dfac7536f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:be8e3c1d452216eb3e6fe56c112869e02892640a2994610f0594c4e39a5a40c5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:da1e1525b64570c3d93e126acb321e11dc25d23c7e092e715b766bdbde09fd2f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:c1f09c1ef25ea8daa6c5bec57ddbdba2055da6a05fee1821771db013419c22a6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:4ac85110825f489cc5d4db30b97a722d1b697a1c79377a77b9712cd665f2382e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:57357addf25be88464b8d63cdaff51638cdecc16d32909336d0ed2a4e4e1b6ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:af7b1760d2674b8c546c9b82e6fd6413f233b8998a615041ba20e4d248625ad5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:02c20cf5bcbc844a625318f5cf3b623eae01907bc7f747ec995b3ee7c4d0437c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:f8360127f86301ccb64c2ea543d0a37f6be26c72ae67c0e2f21395ff2b667851
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:3f3c08a401338c28bff920fd065abccd6088a70f38bae93f6686f62f96c6df31