dhi.io/mediawiki
1.45-debian-php-fpm-fips, 1.45-debian13-php-fpm-fips, 1.45-php-fpm-fips, 1.45.4-debian-php-fpm-fips, 1.45.4-debian13-php-fpm-fips, 1.45.4-php-fpm-fips
sha256:aaea0b5f752b0d6958f5e642607bd7df84c233eb817db90b5789c6096a5bb847
Manifest digest:sha256:5c8e3a9e759ece59684ab659b5f3ff7057bc784354f697c1f4f3f09e7acc062e
Size
138.01 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/mediawiki@sha256:92ee325745a2aa1d8f6f1f498117e4a262fd4161bdc09439fc1ab6560f68d53c |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/mediawiki@sha256:8a701a5c6a178f11796e81327e1d17dfc73ebc89841c26029c284ac8d3a34c69 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/mediawiki@sha256:92e7542fd83cfb871c59458032af36097ce81b579c4553fc52ddaafdb0cceb50 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/mediawiki@sha256:3e0885bb1c25c14ae8679d33d3f0a9ce947ca2c23ff4609bc80075f77708ae82 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/mediawiki@sha256:97daf82b7d456e5b6291aabf8e13eaf071b4ce923afd9ebbf3f8d8edd75f4d33 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/mediawiki@sha256:21544af85ef349a21827b0107e230775bd209c4c4ec62e12499c1c3a527429f2 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/mediawiki@sha256:ce7524d067317fa9238ac282d6017b17d7726f940e5c9cdfb5a04861bbed5c92 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/mediawiki@sha256:cbab407465e98c9f9d988f9c6006768f1ace2094742c3cf2b585dd93bf687565 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/mediawiki@sha256:9843452609c0628f4cf8f37adab09c7db45012838d55521a423240d2a1b1ce21 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/mediawiki@sha256:253a642b4dbcf5fd354bb6c6b35fc59a315e918655d0fd2bcb3423ddf7e35a5a |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/mediawiki@sha256:fa07809d0fe6ece2db19b63b77a6646c37fa9d1990c0e7b6ab7010cf2d80e580 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/mediawiki@sha256:10faa966a281161e7748c5cac48cf45607e42c1819b320e2522c26c73e5a2a9e |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/mediawiki@sha256:b4519073dc08431c44bbca954c0d9c002b119ab9b2c94ce55f947b2bd26ddaf9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/mediawiki@sha256:d8b7aae2682d5cc5fc0c382ef16d6ff79c7904d223c1a8c2c3d45b6dbe0296e2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/mediawiki@sha256:bde4ae7d6e3d7f8759851f3ecf97493614cf443eeb246c40426414c178464c93 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/mediawiki@sha256:d37736942eaa8f91e54e26a5b87270a069d0a30264ace6507aeec97a4245102a |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/mediawiki@sha256:2b6561478e09093f0c8138136e07b03fe5ad81af7289476a7b51f81d1ab67211 |