Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips, 8-debian13-fips, 8-fips, 8.4-debian-fips, 8.4-debian13-fips, 8.4-fips, 8.4.11-debian-fips, 8.4.11-debian13-fips, 8.4.11-fips

Index digest:

sha256:02cd5157de990f84cac9e2597388085ca608d09d560b77a3d83f2df98bdddd33

Manifest digest:

sha256:eebfa8ffa905961f53614c51d69f22eb09576cb71a49e4938cc9d16865ea79e0

Size

76.77 MB

Last pushed

16 hours ago

Vulnerabilities

0
1
0
1
0

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:52a8964c15e8fe20aa10db9cc23d649406c60e844675a984ec53bfa39d56d128
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:83105b76f1b70cd5a0a9ddf0a025ee95dfa0806cf3165c500e606b85ac1c1981
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:711a077c0449a6b827909fe57ce6bc80ec2a23de165d8d3b9d7f401242bca2c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:732f7314ee6776cfdf3cb373365fcdb01e98fe7af497b24a14f823d2abe89f5e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:e6da37ec50cb149b6290a7d0d0653080e72e32686315106e5178582051631c0e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:58519b6ab4efb48071429400e517c420e9104a4063295a521c852bcbd996d137
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:a1963659ee460dd8f15b4ba58a07da8d8780f6c145f5edac1c7d3208e048c0b7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:9ce7aefcbf72f7c5e2c13939ff2018cf84a414ee3776f147a58980aebaf8a329
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:1dd6e58714bbcb8db9b244e4ba43a54dced23094bca00a14e9257308f3e5db74
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:413c540292bdef250fe93e436d0eacab04efb458f2291cd8a111974b7d788cae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:da068afaa7db562a0c6196e72cdffa3c1ef72b0a869b95a411fc9a3d7d200319
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:f76f2707b1d7390c0ee977dc26527358e4c08d159d75fe65bc2b8dc5fdc5169b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:7965bfd2f4ecd610542078d7cfaedad624100295c27f5be5acd4e6f22bcda824
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:2193dd80c0d1ad8fa67314e3c20ec057f225952c5586370c57dabff7ba925e63
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:f885e2132afff119823621cbd3c5820ab57f4aec422c1b25f590b8fb6c690ef9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:9225ec38001a6aa5bc7b6d0b1c5d586d6405cc5cd286ddf09170f9f7c543ba4a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:a48cb414242bf20a00583eb825d879627be9b1b4ebe915f762ae08ce36ca8673