Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9-debian-dev, 2.11-cuda12.8-cudnn9-debian13-dev, 2.11-cuda12.8-cudnn9-dev, 2.11.0-cuda12.8-cudnn9-debian-dev, 2.11.0-cuda12.8-cudnn9-debian13-dev, 2.11.0-cuda12.8-cudnn9-dev

Index digest:

sha256:37127589c2250623141d4d535ef65c94e699ac84320f972ce04bbf5606c2928e

Manifest digest:

sha256:ae156015a67ef0f60e4d5b722b027fd269c3fa01d08ec44ad8e6d8df7c2133a9

Size

5.50 GB

Last pushed

1 hour ago

Vulnerabilities

0
0
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:08c2e1b4b3dc760c3326248c8096df6516740256fbf40e0ba7cd82ccf5b67d63
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:bdab8fc644832099a18e74ca86c7e189edc0931e0a2e9d494ca4ddb83aa390ff
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:f9ff2921e4e066b8798b3fb4ee4e897ad2512326ddda804a944819324d812b03
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:a9264745b1654aec310a3867c57e1152f6dff0062ced34d3bf6437935ada8999
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:e1af79678381591ab373f05e676f79427617c0162e98cbb0d82d091bdffdbb28
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:6a08f0dee03d9b960b800e65cfdfe48aeba60685592d073488747601ea0d22fb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:da36a98de628353c2e93b826d5743a8a9e647b4b1e1569c6bdfa6ab1f306ebdb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:4f393bb45916b8f9568f77b1cb85eb6b426dadb241a52414cda3d19e15f80945
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:a7d33d587816848e5f08687efecfbd8288522a5269b86364012acdf83814a54a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:7f71f91015ff5a40d6e66bfb1e286fc4032aa267e137dd4ac2f029e22e705ec0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:a9ea06a21c60ec00632cbb23b034db7117a15b3cb4e7b60c12237c217d43e134
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:ebd021aeee290476cf2db90760a44469d477cc45a0b2fbe423e43a7f5ad04e09
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:bc210dd6318113aacb1225168041aa4f55816e8b85a07bd415a32b5169bed228
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:5c92692cb7c7ae375192e7620bbde471fbffb3424d10400c4a29f4f93494e13e