dhi.io/mediawiki
1.45-debian-php-fpm-fips, 1.45-debian13-php-fpm-fips, 1.45-php-fpm-fips, 1.45.4-debian-php-fpm-fips, 1.45.4-debian13-php-fpm-fips, 1.45.4-php-fpm-fips
sha256:3bc8bbe736dc092398cbc648e7e2c6606b6848aa5d6390c96dd49b9d0286b08c
Manifest digest:sha256:ea54454d97f2b299a536739fc5eb15cfd14480ebe80e318f24f938a5226e85cc
Size
137.98 MB
Last pushed
1 hour ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/mediawiki@sha256:100bc312a5297501b3dddf7d57c4fe6744f34420ff394cb346ce5231b89127c6 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/mediawiki@sha256:edfeb7e000a9cf8774af7102058c1f31749eb7160ee0ed4d0b1c633e90064c5b |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/mediawiki@sha256:9fe8905937e55995ad1293a86ded8f3e6e82440192350b802fd5e25661b367ba |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/mediawiki@sha256:acca05df4208c7abb4562b29724cc712a567ac20a24b5a2a66f492ab847af6cb |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/mediawiki@sha256:8ea1c9990efb3ea723609a7f452540750a12c225fc56581f7a11fde8227ebf2e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/mediawiki@sha256:604400eb24771068316525018a515c220160eaf4bcf7260c2a9d7aef188b5279 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/mediawiki@sha256:f64b4df10c17257b809b8e0d1aa79fb14a03867c3e8d86947b3b75ffe879b707 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/mediawiki@sha256:9fb20a2412ca60a1b90ad43058270aa36318642d747b1cbaf5fa571e2c560250 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/mediawiki@sha256:6530db34ae38a8864479b55999b2762798744759c9b28734a61d2b3b6046d02e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/mediawiki@sha256:84dfcb5d4203c84801464032f357eb381898479e5d5a9b99818c5082574c2295 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/mediawiki@sha256:c3b2b0a961ad59267a396ad9bfc3a949ac465a84eba3f6f6bc1198d212de4fd1 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/mediawiki@sha256:28b4e96f868d63c50c848510b7d4834c6b8e28873a92913a22d3d7ccd2588e03 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/mediawiki@sha256:b422d2d03dfd26af33c5b0cb995a1e0ea5301c55d1c02b366c60afb68488629e |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/mediawiki@sha256:252c5b30ce7a0152f721de4266da2231a9a3e79b9a1cad8afcf91fdd92c54726 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/mediawiki@sha256:c5adf3b77dbf3bb48bd281b3ab618c093569abacb9c399e92df2eac38783f3e8 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/mediawiki@sha256:10fea315d0ca3691f868e3958350cdab4e3c5aa2e287dadaf5f61f39ad401bbd |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/mediawiki@sha256:33d1391ce94ef0d8a21db0ff8bd0e37ffba648bb98f205a0f849ce9434b0f01d |