Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9-debian-dev, 2.11-cuda12.8-cudnn9-debian13-dev, 2.11-cuda12.8-cudnn9-dev, 2.11.0-cuda12.8-cudnn9-debian-dev, 2.11.0-cuda12.8-cudnn9-debian13-dev, 2.11.0-cuda12.8-cudnn9-dev

Index digest:

sha256:196359e887ce1364d9b1fd2cd1c65d4581edc9a2af53deb292d8b779abeba528

Manifest digest:

sha256:875cc62c168286907e262db5538a82151021aed651b7a779d61324e20050a780

Size

5.50 GB

Last pushed

1 day ago

Vulnerabilities

0
3
7
5
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:a5181958f031f35d3100c9aee20babd4f3f176348345b0296a8659edb19e716a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:e9fe585a08c65f932b2d156b758ae5a36f3c108595b7741355c14884fa07f4e0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:da726a6e5ec182e8dbd7c9aae666a3e207c7f951069332a6c97f5006ca652cd9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:617e86e4a0067c175ca233f4a7b16b70f3429983f288ccd4310dfc8472b76165
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:f69d203906cd393175b311a49a7f0f5613581517c351b6227570c0b7ab070844
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:4c9000f19b53a49582b8441e38e0cfdc78547fa50d5f074ad9345f66e94e8ddd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:816501deb3f1dbf97378e0b656ab59d8b0624b143d9ccc0431a35d6221f8538d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:535bb9d7c55272cc4c92c76f6afe2e9eade7f95d46f33af4298c7f6a40fc4cfc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:cf1846c5513738fc71cc0ed9dea137e56e9754b754620f901a29e170cf1ce883
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:7d411ab63996d933fab9014e5479e2321195f041339d3764862b0984cada1262
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:df86a70edcc60683017fce883acffcefdae95e7c14847bc61d9ce177c3638fc7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:f6da32a5c7154a90ce110fdc1ed822de7f191f2f176cff7333d59d4f69227797
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:2b3bac3f49025ed1cf4eaa8e85a745bc90097d49b267611395d04a91ea80aa5a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:0a88346278469be2d6856bc878ac58c0cb003b1d91812bea6348d02ded7c2691