Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-php-fpm-fips, 1-debian13-php-fpm-fips, 1-php-fpm-fips, 1.46-debian-php-fpm-fips, 1.46-debian13-php-fpm-fips, 1.46-php-fpm-fips, 1.46.0-debian-php-fpm-fips, 1.46.0-debian13-php-fpm-fips, 1.46.0-php-fpm-fips

Index digest:

sha256:00b938e0d4503b70b79e6cf949bc35c5b1cbafe7ba92d93054d78ecd5e62b52a

Manifest digest:

sha256:361b6a91dd1b12fd42f7d03023f3c40d032c7fc94301544756e06b8cab1fbcca

Size

149.37 MB

Last pushed

24 hours ago

Vulnerabilities

0
2
2
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:36bcd7c6fef9da5ecc8a0cfe44d52123b4f8c23baff6bb8ec08e0a4712ece6d9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:8b1608778900d04d2ec5fdabd61e4eca48c10cd38359c16aceb3fdbef4fa42e8
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:0dc1651389a704d4512e3c8c3f2c17f652566d85ef61d1929af28cddb661e271
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:9196b47ab4fdae07ecc64fba6e4ca63394e68a3f07753ca843bdb8db7a38003b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:881e68b4b5ffcfc3ceed655a96a478905fb4c5a97530871f56f3fd52993ba2c0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:a7c6e4f2efd12d131d250bef870a8d35be244ae185e7d54f3ab93ffe63bd1807
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:1f6d272c745a7b1c1b178c5e16d91dccfd1dab8d25bab701deb32745e2495e8f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:4cd6f1843de921c434ae75111ae96eb4119b0de1f8852b3b8670f084db57ef66
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:89c33f82b499fb1ad06312ad4444c21a9c88948ab54fe9bf24b9fa7b8250532c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:bbfb25a89a35c00e8fd79959a70893bcefec4b60b50036709d3f1b95c8341c73
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:472780fbced78d5d2bee696f3f0b854a44c3f337ec9c6cf4911b4f890d2ba9a9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:0af420a25a84f0a4b20ab8a76e2e89a0ddf0d9cc753160acd06cab1c20f0cb4c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:9f937617f579dfb59b37d6c4a6db1821fa4e9fea6e084ceeeace4d4fbefe853b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:3c1edfd79ebbad741384b8a5a61087ca78505689f12d1eb411d45fcfe8843133
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:bef63fc064ae9e3602180f2ff535185cd4da9d80491ff3e5eff55b3b8d383e95
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:45063b2913426a86371183681149ef2f5601c49d90f1775e81902757a773492c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:a13bec55e4ea4a5c152fb861570410e164c71da4e97f850f480e5049cc957c94