Sign inSign up
Perl

dhi.io/perl

Perl 5.44.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5-debian-fips, 5-debian13-fips, 5-fips, 5.44-debian-fips, 5.44-debian13-fips, 5.44-fips, 5.44.0-debian-fips, 5.44.0-debian13-fips, 5.44.0-fips

Index digest:

sha256:aed6c1e4586fa3beaa32efdf7753d8a9db1d3ae08b5c747fd430543cda97691c

Manifest digest:

sha256:b21add0a6a359e15960c7c4cae9a77fb3da7c68103140c0d654c12d85ba66294

Size

28.86 MB

Last pushed

5 hours ago

Vulnerabilities

1
2
0
1
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:0b9e31df6637a94000f25327a4e4fbd737209947456ed74f7a2f5acfe423da4c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:35785515714fc6086d78191705c4da2cc654796bd66e6efab6c33c99c9c03a55
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/perl@sha256:1fa1843c220c0e2e8d96117310f8f4bce8c594633c624d0540bd59e7aeabdecd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:64854e1460084b7cc026a9df8ba76731fd97e68a86c6f91bcc5818625866695d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/perl@sha256:02f7340f37a52f15816eeebee809c6fb9baa14db7ce0cb95dbb03b83df524ec7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:b6a0f9aa69e2295aaef24db5d3bfbe99f6bc72cbf7ea83c55a035ee8be85a33a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:e56fac546a22f7419cc7d087da8b339832682467e9af6c7dc161a02666b27246
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:354acc65a53258897743c5ccf0469ea854e873fbd52e39836a7f5d57f02d0b6d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:9d732052548aa4cf5d3a6eb5161f522ed44de53270059b714cc882160176b2aa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:aadbd4a5b6964256f22775c5f08b6454b8e4404b30dec0e92ecbf760032b679d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:91ea547cff3218a1f9ecaaaf79b92ecfce61e327de3851cfd0b0878e1dcc7e20
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:be29d918e0c33db81f795c85bd26d52c2c204cea75417211b0df50e7c4ebe59d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:48efc844afdc67ef8a3adef93c6dd4981fd453e46434928f97386d532a9d6c94
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:b226204a50bd7f31514f3976166a023859c65f4923b42eb538a69298138d152e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:8edf8e6756133121c519297aa83ad57269a7c7d1511036ae0ba288e026a85396
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:3292e2e686d5a365cc4bfff3938a31948888c102a2e8d04e79324ac055c7424d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:13188370aa6df9a4e74a055c097c8e92323f9644b9cd76719080b465ff8cb36a