Sign inSign up
Perl

dhi.io/perl

Perl 5.44.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.44, 5.44-debian, 5.44-debian13, 5.44.0, 5.44.0-debian, 5.44.0-debian13

Index digest:

sha256:b5d3ced44a74c0fa6ac8c82973d6031df7c8d459399a1e3e4c8e821fe2e9736c

Manifest digest:

sha256:23c43181a85c32ac371900b8510bd3277873021e57b411bc5a2373fbb981a035

Size

22.93 MB

Last pushed

2 days ago

Vulnerabilities

0
3
0
8
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:058829189682daa5bb9be5d6ac6fd60d1d894eb855f2e32756a9b0881d53ca85
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:fac8ad75bfcd1ef680ab20dd51603784aa2435010f8f501aca17a372caaf6220
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:2b1005bcc7a2be7fbdd35377b99c454b0063121200eddc5fd97d68ba0f722294
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:7b344b91671ed972399d9e249723ffcc376ac90e103f48f805daafa78922d00d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:5f0708e4f3ad2b2703fa27ec7e7388868136f209d33c2eab504479e8510c816c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:a9c4420761f89f56615aee4645c6c62a6e9f6f6b2ccb481976a3dcb2382730a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:9e302295096a9862fea8b685f8b4d3e5862359db49098ed6c6ad92290c0f5265
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:8468e7ed0e87876b68227ecb6884fc65b8ac8670dc7e639737775a3be8b384d7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:ae716fdfdcb425f8cb8815074b1d7012f2b99d6b0375a1dd527083166c32b0fb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:2d4fc9d4607d469476271ad48d0662bcec8215a42311b4c163b6707bd92065cc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:c47c309ce65acb738e318ca9797eaa31ae50dc963e6a4225e94d7a517643b5d7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:9d74c166d289c10b9ec7c76741966822044ac235ac22696d909aec0714fca483
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:86dc9c4963b4a7d4bfd6f9336c26ed82221ad29826480a794eff2a9be88b5897
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:fee39f6e0e7ac5c9234b3b8621f655b27873f5d01c148d275407fd6c574a053b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:bbd35090673ee762d0c0ae36a3b9d85fbef2c9c02dfad71752088d9e71156b12