Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-php-fpm-fips-dev, 1-debian13-php-fpm-fips-dev, 1-php-fpm-fips-dev, 1.46-debian-php-fpm-fips-dev, 1.46-debian13-php-fpm-fips-dev, 1.46-php-fpm-fips-dev, 1.46.0-debian-php-fpm-fips-dev, 1.46.0-debian13-php-fpm-fips-dev, 1.46.0-php-fpm-fips-dev

Index digest:

sha256:0515765c17ce8c991372821f04da8c7da00097ae17415dfa20b4a1263dd1274a

Manifest digest:

sha256:ddcecd5a139e8adfddfd7d81ca985e941bc54cd7845c784a86af734f808fe07d

Size

158.20 MB

Last pushed

51 minutes ago

Vulnerabilities

0
0
2
19
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:ca74159e1738be6b1032ad36343d90e7422c8b241c5f72c545b7b6de3b50ae72
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:fffe99087f86bc9faf3e5468d5f69637fdeb61c11eb7633376f260674abb929d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:a9d9090356fe8f23c3c43bdfe29a43a33519b849f5cf28f038d8fb8978c3f04d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:3ecdae91227bc885c3e52904e27c566358c3982b8d23a19ed67e734fa0859e0e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:5219a5947ae2f83be149be1d4f6176eb333fe6ee1e3711c6f278494538b6beab
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:1afc8b77b9a1bcbceb7aa7b518ebed1f28645422d42e696297d6a4f2b6dc8548
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:d5c5319e01fd90d19bd8d54df295506fc23433252b50f279c1a9fabd2bb0ac18
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:7b9f0b5cd085fa6dd8530322ed7fc894a2ec3b23323c362479b4c953ac3e4e7d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:107b194bbcc735c3aab0e91b9823836d35f4a8f8c48097940f1c1da4ad786927
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:2c4d2a52be72c3c8fc022624060fc44ac77ada01ffe9a30766157bc242cb5896
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:8ba41fbc692e6eb3984ccd857a2b1cccb1f0189205b81dc63d5f09a4ebee5622
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:0da84dc760bf3e286a995f8f59a99da616a55042f4dd8e025c73a05b9daff44d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:e8ac556f968a2ca99bed66d54c49732aef81e2c3f93878125c667795c90a55c5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:5c98c2c7791b7d80fdf18c8b92c50548996b2295917a24cff3e80a8eabdf5c7f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:93fe8d55e979e47c76cfe55af30d849911488db23bf2843e60e7136e09e27aac
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:91f8a5c860b68a99fed6f8b9a28ad7e7a4125d5bdb3f263c16925737cdecbdb2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:57fd5a9c558970e75f32d5e4546822b77603d9a5a1847480840644d12ac3be39