Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.45 (php-fpm, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.45-debian-php-fpm-fips, 1.45-debian13-php-fpm-fips, 1.45-php-fpm-fips, 1.45.4-debian-php-fpm-fips, 1.45.4-debian13-php-fpm-fips, 1.45.4-php-fpm-fips

Index digest:

sha256:aaea0b5f752b0d6958f5e642607bd7df84c233eb817db90b5789c6096a5bb847

Manifest digest:

sha256:5c8e3a9e759ece59684ab659b5f3ff7057bc784354f697c1f4f3f09e7acc062e

Size

138.01 MB

Last pushed

1 day ago

Vulnerabilities

0
3
2
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:92ee325745a2aa1d8f6f1f498117e4a262fd4161bdc09439fc1ab6560f68d53c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:8a701a5c6a178f11796e81327e1d17dfc73ebc89841c26029c284ac8d3a34c69
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:92e7542fd83cfb871c59458032af36097ce81b579c4553fc52ddaafdb0cceb50
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:3e0885bb1c25c14ae8679d33d3f0a9ce947ca2c23ff4609bc80075f77708ae82
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:97daf82b7d456e5b6291aabf8e13eaf071b4ce923afd9ebbf3f8d8edd75f4d33
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:21544af85ef349a21827b0107e230775bd209c4c4ec62e12499c1c3a527429f2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:ce7524d067317fa9238ac282d6017b17d7726f940e5c9cdfb5a04861bbed5c92
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:cbab407465e98c9f9d988f9c6006768f1ace2094742c3cf2b585dd93bf687565
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:9843452609c0628f4cf8f37adab09c7db45012838d55521a423240d2a1b1ce21
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:253a642b4dbcf5fd354bb6c6b35fc59a315e918655d0fd2bcb3423ddf7e35a5a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:fa07809d0fe6ece2db19b63b77a6646c37fa9d1990c0e7b6ab7010cf2d80e580
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:10faa966a281161e7748c5cac48cf45607e42c1819b320e2522c26c73e5a2a9e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:b4519073dc08431c44bbca954c0d9c002b119ab9b2c94ce55f947b2bd26ddaf9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:d8b7aae2682d5cc5fc0c382ef16d6ff79c7904d223c1a8c2c3d45b6dbe0296e2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:bde4ae7d6e3d7f8759851f3ecf97493614cf443eeb246c40426414c178464c93
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:d37736942eaa8f91e54e26a5b87270a069d0a30264ace6507aeec97a4245102a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:2b6561478e09093f0c8138136e07b03fe5ad81af7289476a7b51f81d1ab67211