Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 13.0.x

CIS
linux/amd64
debian 13
Tags:

13, 13-debian, 13-debian13, 13.0, 13.0-debian, 13.0-debian13, 13.0.2, 13.0.2-debian, 13.0.2-debian13

Index digest:

sha256:412b0fb9dc9efd00f1ab0c5ea50f65f7412406c7318c9543582f06e382e02598

Manifest digest:

sha256:5d7166d5e21a69d5b153cdeccb03ed676b75fd7d927745a0a60d13d7eeff02fa

Size

89.36 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:13

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:13 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:3d7512097b401bbca79517b6fb343409b98485f4c05d0c14d416547ce2099969
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:2cb8310dfa24f1cc54c43eb71c5130eabd541858c848733340a6a953117727b0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:535550c19dad5ee3700d56f12897dd32fc5ce26cc86db289455df77192ab40ae
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:834035f9941600ba762449ec7b12ece2f1731c8dc22d97bfbeb63cc0b579f3f2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:06712ee3f1aafb62e65de0c542817ad735149e8fed611eedc238be7f383d8558
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:e3032b553bf1d6fbcb16c41a7fd631395088ed94e7e9be8b8c9a9bdffcadd2c2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:ea551feff9684bcf0f068503e21305b37b5b312efa353c1da9fa48e22b16e859
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:9a9ee00f87b901c2270160168ad37ab15d60202c9fcb3067a58f0c8ca2fd3f40
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:ec6340180638d5df53970a0916e140a6e06a759c61a9a298e7a2605cd6425323
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:ea08c6eae76310606d148940b1268db9d6b64efb644d284a62d3890241b1804d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:b92206d6db5f8195d4c300ef1f7a5b6fa7fd1c5ebb207d9dc56a2ab501571fed
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:7add4cad026782334371f24d9b3561c60f2aa166d14597fbea0f5518a2020a88
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:81a25c7615dd029fd27b1def2a81a088f3ef4eb24cf91bee2e46e03ba51cf6a2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:9761c09b34cdf44354c532ee7774ac6efbd4f31b3fefdc0c65d2986503e3e2d7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:4a17babbbfea5bb9ea5f96e0c91a16cde9c13ab16b6efb9d8a70f720a3daa557