Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 13.0.x

CIS
linux/amd64
debian 13
Tags:

13, 13-debian, 13-debian13, 13.0, 13.0-debian, 13.0-debian13, 13.0.2, 13.0.2-debian, 13.0.2-debian13

Index digest:

sha256:0e05268f47c33c91bd91c32e2ad6f04d9762f9f85a6675d6fefc8e1e39ae352b

Manifest digest:

sha256:bed2fe81cc5e0f682d2105bc904799e854d5bc20160ef3f0ca1e790ef1a32f7d

Size

89.36 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
1
13

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:13

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:13 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:a6d146ddb44d83462d1e0d5ea16bdbf5ac0b118c622db6a8199d2fef4acc9d63
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:33e55961326b75a24122805971e772190dc497503fafe5c9963c10d21926ab52
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:819bc0ddf59965c07341f0bf4357839cb11daec5dea12e4c63ac882a5b270338
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:d2841abc5ba46bad6991faeb5489267f2624a94c96622b4cc018dedec17c1b87
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:a82734f9144466317bcf9f6d1a0b7b3906ab03a647866c6919427107775d1d7a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:2b7406fd35679c744b55a2d8886aec0899d9ca9611d1cdbc935d99d38904da74
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:ebe7c177b1d16480d2ee7dcb5fcb9ed0f306033129df45dee2ae11537f44b1a9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:2779beea70161ef78963d2f041344f4cec292f2321edacaa3ef0ad6d8710f79f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:c314307b187e92f81319a95f0040c7e22974b453506aa66a7a0f47faf0d0b7f1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:d24c6937a63816479031de82ceeb890975cb1547d0a5bfc5ebc902a083d4e1de
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:304c2e87675394d0d62eddffe32e56e355ae07960479935c77f1f7ee483f22ba
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:25da8fb586158b3d0c788652f340ee3110d34a4d9054d02553ea1cdc0ea10dba
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:704ef751c829968987947140364370ee0385ec26b0a99976e618f8d216e6908d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:506d2ca1761591ab8aa0d480c6980564baf7e992fa76d800e3c09f9eabb3de40
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:6438bd2b99a95641edc2ac9a59a34eb48ce7a5ac499d4599bbe531bfb435b7aa