Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:81b91452dc72eb01bc6f59f39d6548e332ca88405ff1adaaab48a4dceb1786a5

Manifest digest:

sha256:1a62120263c5890f19102ee3d8f6609afbc8a70dafc9e44059d0334337e19e9b

Size

157.44 MB

Last pushed

19 hours ago

Vulnerabilities

2
6
2
7
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:a3bdd4a974ed37ded1b9047b7769a8ceb8e40bb7976f867d2dce4bbc200e1ad2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:a3569fc649c279f95be2ce6c8b2c0c62db1f2ada1ad654068cbf04e52b64ddbe
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:be08e222158cffb562b79f981979c5a3943d85bad5730afe63aed666a6aa9295
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:b32347f9294bd13b683a922ce6acf8b2ec466a06f307dbb42164343393e28db9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:5336f8b3aacf8d40085ab4d9527dfdc40d01cf91d7db66d723570781ac3776e0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:a88791931ebf796a53b5e055fa7391939f54c0be78a8d7052cf639847b2b771b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:bdb1135ff1699d9d9577e2372e5491616f199e276cc9dc7fb1a699e022bd269a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:26c90c1b140b82fe968617d29f1971e33a521e92253c196ad37cc2bb6844eaa7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:86ec623c10fb192ea5f16e67f19fae0acd0ba0204fb4ef79a984802939a790a0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:ae4b093358928d8a93d0238f2eeff92ab1504513831561c1b3174720d1c69f3a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:7b2202711b5d0e30bb5f00b7b8c7a4a034e381f73793ca5afbf7221a21325967
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:0095344e7ac7744b9c1cde0bfdb49402c51a6160c46e4297203164846461e965
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:8a16510fee157eb61ce65b582f5ec0993c44226eafd68b1cb7fbc5df00976638
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:d5e3ad0f63c02bb48b47ef57223a7a86d92ad2b4f25df5c6e3a53b260408e4cb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:51ad76d69fe24cd4c4c6da9964dc5079151ac03ca270f006c4bf6d2f396ab0e7