Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9, 2.13-cuda12.6-cudnn9-debian, 2.13-cuda12.6-cudnn9-debian13, 2.13.0-cuda12.6-cudnn9, 2.13.0-cuda12.6-cudnn9-debian, 2.13.0-cuda12.6-cudnn9-debian13

Index digest:

sha256:3261c6ceefacfdf51dc71525f883f76d96894a5faafa0681fd804d763fff97ae

Manifest digest:

sha256:6481698e8810f61ac85e2482213c78ed02f2737c4070b3e856275915d7ac80e7

Size

2.39 GB

Last pushed

3 days ago

Vulnerabilities

0
3
7
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:651bfb5f849b150e1014b82d8406e959d95406c808c020474be0b9a7e1e48d7b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:207bc7607ce4432232a9660766b9fe85fdaf472df88e41c0eae6f1c89eddcb1d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:6ed287962a92b741def485227d1cf9105a77b269cb318cf5507a27e7f0b2a67a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:8c5541e697e3a63511290daa4501f4d460337ce9590839a55d283ff7bf2d0ecd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:a18a7adde15947eed02dad0f583e08f53358c5072bbf3a20912dffed4fb8bc3a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:01654bebba549494b7532d9371b62a9116b7f82e2914354e37edb56545dbdbfd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:0d4a24ac93cfb268c004eae650bb50a89a1a1b626583ca8282648c4ff89b0830
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:8bc4a4d77e96e82c206f512a2f34b9c4da3fdf314ebbe3b3cdf9a89b644a08f6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:29d1c68fd85cc568d9e49675b30db124d5f27dc99bf0614cd97f96dfa2bd90a8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:0057cdef207188b893f0f43409bdd75d6d249329c5e8e577eca34766e9186fb6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:721ce306c8f40e53294f579ee535430db2adae9f198bdbf6dba89546b6432a95
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:f0091e1783fdc3d0fc782216abe95d444cf130be92271bac5152c6f6c3fea438
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:e30cb9cee1e7176c2a9b665a3a69cc399664082c09d8a9aa5b6d0463028382de
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:f3ab8d67d9e70184efaf1ca5f1c1006606d4887732bdf0b34aebb9a3c66917bc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:d7dc622aba107aa4df4a4df3349f11974e4017d0438d6f145d92d7b243a9f6ae