Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x

CIS
linux/amd64
debian 13
Tags:

11, 11-debian, 11-debian13, 11.8, 11.8-debian, 11.8-debian13, 11.8.9, 11.8.9-debian, 11.8.9-debian13

Index digest:

sha256:fa80cdd20ff38ca017bc41381c37c3a94fb016adebd4b81bb2e57492aa13561b

Manifest digest:

sha256:66f9bee4cf64d6b87fe3eeceeca6b339fccd36d3ebf2166dbda04b8b9a916677

Size

87.92 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:9b79d57ffbc433674f325035c21e3018f8bea4582750d38e2c70e64fa2f44c8c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:6992df19acc44859523bc889f255ea60fe6fcfb8d6583f1acd57b73732312aeb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:30045751250595107542a598d5a2f179f494e81b7278feea07fbf5a38fb1ab9d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:a573307f5a8c2600ddf821b76f3bc1d5c2fc5fe3589b39239d8a0a178ba1796f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:9f96de6d4359c301d589ec8c6c70f7b65574138e2ab6756c91ee8179512ca8e9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:523cfdbce267beca970d9c1ac1f2a1c223eb60654d33b0546db04a8eb0758fae
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:e0d758876714ae0e3b4387fa803a04979603acac6a82ea1d96b8ac8cf5760389
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:affa7d3f1071ab993715e60efa397bef62ebf6c6d4c394d31f26ba0998a8d19d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:6e9975c45008fbb0661c15cb60f003b7ebe692d7a67873caf36b102447da0d25
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:5848f384d877a817277ab555fc192311d963acc0e13bc638fd12eb9af31c2139
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:8f487fd8ef9b89dcabd03021cd8508d14d505376fba15994865eb214da10951b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:1e12625e7669414682b7814fe367cfc07c35fe0fb083bca9df5fcae1e35550b8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:d925adf84ab8e404db9bd35892200d6b20594de3fc30f75c35fc7ae9be8b32e6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:85f5f0ff30747ea62a8b654ca7175c09bd923997aa7bd07aa3530804995d3034
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:3ed2893a9ef1e48790cedee07c67fd9284dac1d0b2e21f9ae6b4b2ad93ae3ace