Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9-debian-dev, 2.11-cuda12.8-cudnn9-debian13-dev, 2.11-cuda12.8-cudnn9-dev, 2.11.0-cuda12.8-cudnn9-debian-dev, 2.11.0-cuda12.8-cudnn9-debian13-dev, 2.11.0-cuda12.8-cudnn9-dev

Index digest:

sha256:26222f4f05138de6fa4d6691b590ec7d91a3c9c2b303c652225ddfd3b57b6fb8

Manifest digest:

sha256:db12f1048b49bad598db1d5ad72b9a32d068f84ff0eb26c859efe985eba555da

Size

5.50 GB

Last pushed

2 hours ago

Vulnerabilities

0
3
7
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:03c07797d53277075d6d4bbc9efc2b711fbc21c734f3617d4c05c375356fcdac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:6520b7c613593a522326318c1a735c74863ba687116d9d9435dc92b54667219f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:59d7af8a125c9a4f74df497233daa7160dfa10e5a8d3bc5a12cfad1d8f61f4d9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:8181ab8188615a2948955c33119d71e2f1f8aa3d77a2e0c913910175682c5933
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:e5a36372377c921eec41e930afdf6aedc5a5af2c9403f8e5d2dc24f1da7db098
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:f981d087a6c4ae582d1ee0741f433e468ea544b6e4c85502a07a53bb954e3e6b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:a0db253a06f5cc3ca3f49a440d2193252b95b316dfc9dacccef63839fe20f23a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:fdc3d6a0a5c851aac8f95e73aea14142c097672320282a863f2f394be97a2e1b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:ab36a80b2590c62d7644017b6cdda5324ca210078b88c6bc8c6923189a82918c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:4444b0a571cec5a095efbf4d6f0ffe80c6684659ca4cb93d28f3d092856a6f4a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:41fa59054f280f1a1ce61460611a984b4806d061fd03e5e9db5146fe2a97ef5a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a4fccfc9fe84866156c06c7afcd5ab11123e2c81d21874e2ebfbd2648fb1191d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:02d1f0280b4f14e5eb8ef20db0dff5f408aebc4ca1493da3673da09ef7007c88
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:6a9f2d45ea07d11216d9a421c8903dc866ac6de6312514a19291b8ca153e159a