Sign inSign up
Perl

dhi.io/perl

Perl 5.44.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.44-debian-fips, 5.44-debian13-fips, 5.44-fips, 5.44.0-debian-fips, 5.44.0-debian13-fips, 5.44.0-fips

Index digest:

sha256:9841d35a99d22154b7a447580a2590def06562ddc0922c65d1a5c6cd737f3d3c

Manifest digest:

sha256:51b8103a0bc6d6bbf22a5b4696055395c46487d7dc7296cb30b6dd33fc172013

Size

28.86 MB

Last pushed

13 hours ago

Vulnerabilities

1
2
0
1
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:fd0b12a56b32a218decf1afec1b9c0b32bfe7f336962e97c7167f31d479ef312
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:342926c8b1b84ab425f6565e827bb95b6df1f9dbc337b6aea9e44592c595525d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/perl@sha256:07b704ec8451fb42263702ce4b50d96f3ed4f003d33118ef7f06fb040e30895d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:f3b8027d41f9ae38c02ec3070a4125ee3d31db6094e33cc8f01bc175135b1fa5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/perl@sha256:8800c1dd1965c95a3fd2a27d5a8b933a7fce1dc2cd97d700c32a0cac7542a374
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:958c2c1aa7d5e39a8e750ecfcfd5922ec8464b7715cc74ac6d631af1fddfcbca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:adef7658497fdef1589fd8dea2d61bca4e53a47cf881f7349f8ddbb79f6fa467
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:d975e9af9e5a6712463b9e3a9cccc1698af3693c19f32c8863e3f63e1299a731
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:dc16fa6aa65e70007569d512256b3b3e3ac8321a831d280fbd2236ec1d7c07da
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:a6c4bde716084a8f2802d78b75b3cd07d53e61a744f533aefc1d5476388cd7c4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:6835907eb08f5a2d1222f7c487d81db711bf985b262bbb00abd913cc80e4d19b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:43884dfc969f7e8a2a93bf1e063fa366ef8950b2854000b8e8ada7c1030c8aaf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:e8fafeb76c6086513e6692f102a8f435885d2c75dc91976a84774ab92006797d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:bbb83b8aecd665038a31ff9553476ab9701bf391118554236eb02606126957e4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:6a96e8de7553319d123337e3049c574918900cf562a6f117ac76a41d3373be76
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:5402fe3a0819633ecae22ae71f2827770bab90a8307154f4f8786fe1a446cb96
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:32070653200781545b89c6e8d5a5441ebae6c27b86593356e6903abda21a322d