Sign inSign up
Perl

dhi.io/perl

Perl 5.44.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.44-debian-fips, 5.44-debian13-fips, 5.44-fips, 5.44.0-debian-fips, 5.44.0-debian13-fips, 5.44.0-fips

Index digest:

sha256:092cf07bb4448f1e4d7a92fed00bf8fb4d91adbdac749e0e755c8f287b3b996d

Manifest digest:

sha256:ab707ec2a73a8f885333809a46ff0a0ae80789eb8f51c6ea7b4ba12e4a38212b

Size

28.86 MB

Last pushed

3 hours ago

Vulnerabilities

1
2
0
1
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:cb828fccdfda8535a63733b41900c7298c7a32807ba4be69d1b466c32b9a5956
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:8597c58ec07f51afb0ac4f92e064c79ee403ec4b2ddfb3e78a514bce004de18c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/perl@sha256:20a06276c53b91d8065830b0ddddd8d644b92730a2b90840c75cdb66bbd4bef8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:95807ec24798d16f486ac9ee860b7e5a4de5398940a61c5563d349cd4287cd59
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/perl@sha256:64fa96ca782c20a7ed6f717f7fe5fae6ba77771a06d2e46fd786b3ca752ac56e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:abd5e58d01948c9c8d3a8ab72677be01c99e3f56a4eafbc5c04d460035d62564
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:8306bfecb1916308c3c54b9cfaf03b3fcb6bde14a63970add40e47ab97bc23d1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:dd5529b814067339b4812db3bb083b285f5641a45a99de909014328c7f6c1d1f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:6860b6d1f46e3f85f20faf707befea874e72ab88b76a21bc6ef6a3163fc52dac
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:051d2e3e49029cb0b6a6aba9277258f8b1216821ebd82b0475f37a2a8ee2ebd1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:d56968c4dc3e492f8f8af8943ae65e1597ed951d6a0c6bae96e77db44ebda28c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:25e21e5175be58c48c3f7e11fc45275f75416b3cc7f676068a5c23a46f0e03a5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:370656a05d97a7716ad424df801684d5321557e97cd27f6c22001039f5e3e10c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:43442bc9a5d4deeda65f36616519dba322ea974c56ba7db614bd578b3742c913
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:5b64ce7f635807170c5058fc632122a7b48c780af987b18ed17b06c744b8586d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:1386008855129a0bbe9d1a1d05383fa70d95b823aae58befb16b8faec11e6a74
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:03c8ffc6e59f31291adb9ca083d4441f90636eb5c2ce976fdb27628b3a685268