dhi.io/mediawiki
1.45-debian-php-fpm-fips, 1.45-debian13-php-fpm-fips, 1.45-php-fpm-fips, 1.45.4-debian-php-fpm-fips, 1.45.4-debian13-php-fpm-fips, 1.45.4-php-fpm-fips
sha256:449d5e8ff45bc8c9c3a89e72ceb7fb95060f37573ba165ae6307903ffa1f9cc9
Manifest digest:sha256:50465c392e393c5c2664f5a97a53d12e40d1debdc000ecfc6346b4555daaadf6
Size
137.97 MB
Last pushed
2 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/mediawiki@sha256:eaa3ae22143133f5a840be400b98df4e1709a385d76be3a4c6817a4935e8380f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/mediawiki@sha256:0f2702f4db6d28a9621ab74a5b17e8e9c0e13dde09eb7d8c077ee91d2e647386 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/mediawiki@sha256:516149a233b9c82baae7d0905716fda1d2b1c6b6c95610e9c8a110c4e0babf5a |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/mediawiki@sha256:e1f4b984007126bfcbf5ce0783082333fb290f31d1fe925b85227d9d5f18d709 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/mediawiki@sha256:8368a666ebe69e4a93dffaeafe802c154e6fec65b6c78004cf21eecfdb5d39c9 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/mediawiki@sha256:5e477e8811a0edd11a2b52ed876aa812e9459c37b24dcb48639efd81deca9f78 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/mediawiki@sha256:2457b5ea662b0dd3f1600310e999afe3651dca3b28195c535e9fb8b33e5151a6 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/mediawiki@sha256:47a7abcd53a1fa821c38a5eeca7d38965679a9fb2f836b0f1a55d278b40c22e4 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/mediawiki@sha256:01c6fe9b8917de73c61c69ba3dc33f185b569d47f691a97e3183c84c1c80b096 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/mediawiki@sha256:089cff07f392ccb36a7a1fff2a100311c8be3d4ad5f439067acc17d4bf2a5ec5 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/mediawiki@sha256:b7c72eec8f454ccfe6d32ec4bd0a2b63addd5a29d47c3493e8bff0b41e7959c4 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/mediawiki@sha256:bf88dfd05760a18c2eeac8c44562ebf7214a88131ead418d06ac8af547b8353e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/mediawiki@sha256:9b7bd668e73c277c2d2599a001bb8e141d07d267261d78a3917517f50e88814d |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/mediawiki@sha256:fce3d8bb37f2ae34c1dd1b016226cd9625a41a6271bba1937b3a36ee420ac5e6 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/mediawiki@sha256:2a1a1d216f7ed09c50633c07ff000b6a7a8f43ff280949b68a93d5966295d3c9 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/mediawiki@sha256:ede2d0defbce63b7e355dfdf49840520d972bfa390023654c19f84d1cf531100 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/mediawiki@sha256:9a46f74deef486fd62245b5653b6cf11f0a730345e5112b9a9f33eb4dce90a27 |