Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:5c308b6a7f4415ceb3a05ddbbd58c605245e9e924e88fa20232f4fd5bba0c3e4

Manifest digest:

sha256:48d2c4964ecb21b5657bba24c12217d79def9107827234940525745b2f34832a

Size

3.59 GB

Last pushed

1 day ago

Vulnerabilities

0
3
7
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:48bd23b9c6ebae842484bf4329b280c5e0865294e98e251698d6bc2429625856
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:0c9dfaa2e23f04c4c67fb8a4940ea84ae1813747df6dca98cf987ef544e5e8c1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:909c38119062cfada3901159a8257dea970605fcc65d5facc3433863d7831311
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:13849baa70043031c03d70445ad522593ea60f48d9d4e71a7af2aa641b52bbad
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:491e09a95745b11c2b476185372c80d62f7d31559a1a232fcaf6b097e9aad688
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:7efbfe2c4e8d7f7750ae1f40ba44dbfef33b4a29ffa494de8053e12ce9770b3d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:de280ddf942de1fd656f719babde467fc29996c0ee11d0f2917266fb2df10a9d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:121e140349c7728be0c4fa3fd8199f322abf246e745927e63a0034b34e3b47e5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:dedaa921f912aa3b4f8b674f6894c748eaf903de6be69f07f6862077b08a7560
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:99198b5d05bfb9dbb068a40bcfa47e90d3551b7110d3aecc5c748facb51c572e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:c154b4d1b376a6bd0a9f330f508ff02a6c8dfe7250b9c1db5b9807c507516f4a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:f813a3e57303f9b77caadb141dce3da82207c05d28532345f39111cc6cd38606
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:d2c14ae20ea91a1c4cefea2aff91efb5a4e0c98b5f24b54f8239699e3e4a8f91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:3c6512a24165ffb0c13c4ddf7e3cc121dca0d20498cf33c5db29414b0f576193
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:d9eb2ed6889c0d920fd59ed679221c414830ab7420d9112f9fb9d037f5e789bc