Sign inSign up
PgBouncer

dhi.io/pgbouncer

PgBouncer 1.25.x

CIS
linux/amd64
debian 13
Tags:

1.25, 1.25-debian, 1.25-debian13, 1.25.2, 1.25.2-debian, 1.25.2-debian13

Index digest:

sha256:39a136f73bc1587ef719c1ea59024a7c54ded91efc5e0991826bb5369994a622

Manifest digest:

sha256:46490912e1db8736e4b436741eaf55cfe7b108c5fa5db362d651e9b2fc348bab

Size

7.88 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pgbouncer:1.25

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pgbouncer:1.25 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pgbouncer@sha256:8be5925e3d4944afe303558d93558c04a7b0d7777856e449281b3b483cd96c71
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pgbouncer@sha256:d309baac58b681c9e53cf6e983380c5752c69eb11cace97dc3dd6d7b8949ee16
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pgbouncer@sha256:90bb9b45062262d5c612b94d7c02327ce1979b7ff402b6407d1d947877003007
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pgbouncer@sha256:71852e0684c345bf88643e0ea76d64e7129f57bd172670ee9ea1aaf583cacee0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pgbouncer@sha256:6cefc469550cead9388d440f7735e55c3c71f1477db247e218a591d43e7d6b62
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pgbouncer@sha256:c579fc502430fc600399fae50a285e084903f5924fc41181b9238d03802bf87b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pgbouncer@sha256:385306778a47428366361c6dd7c53d40662a1eea05f2535dc1e2a25a47117495
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pgbouncer@sha256:b65d31bd005a237de994fd3f0198f08ab20869f9f424cca7db2e90fd1a4d378f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pgbouncer@sha256:b2e219d3b35c61e5929a4df92010585151270147011e9c702daa27f87d52cc94
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pgbouncer@sha256:c6dcfe0d06c21446c3f9caa8c558add0d6e34df698ee5309c1a37bbd5baabddf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pgbouncer@sha256:f7d8fee4bcfa9a236c74a655d42682686aab7a187b7f8914006e74057070e058
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pgbouncer@sha256:5c732a7dc3ae26562e081d3a4da1f4f7c205a5379a388a0e46d4db706dcccf10
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pgbouncer@sha256:ba59631a64401a830a898c9e88b66db263c290c4f47e92f3a42337d50d942c09
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pgbouncer@sha256:986a2054204495cc1654d63313b95816c93c5b0b8a00e9dbed89bbd107fbb6ff
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pgbouncer@sha256:04e9a49dda40c07b63799894a90369d8393d652e7e023bd8c7bcc5d26f50ed85