Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:17bfab7953c170cc83bce2e01709b4a7282126bf8ff9e1aa80987e1257e97a5b

Manifest digest:

sha256:b962577e6a1add63f6e7ae9e4ca54d8d4cf2cd4d0e42a6a480c21a88bb358553

Size

3.59 GB

Last pushed

3 hours ago

Vulnerabilities

0
3
7
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:7aa261cc489b8484b600c928769764cb3344457180e8ae29910121ae1a39d40b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:37bf0f433ee02f7b756845a9cf24ac0bce08430649f3d60af5d51c5587e2371e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:41261ecb5663a252101a056586e000ec4f96afc26494e80e3913362fce0fde3e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:0e5b07e8a3e879e95f34b416853fb8d178f355af8031bd201d4833eefd1ab314
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:ca9d259664e8ad40336db7f09ec5f9ba1ecfd0e7e5dcef8e0b1ebd62effd3938
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:c2dbe1e2ddeecf974252f356e8ffead88dd059a3d739217e40f0797aa7af8bb0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:43e3b4cb7aa6fed9972a3d8a5bc7ce3100d9acbc7586bc740ab208bb82609d6d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:b2a5a10cd971566d7f834e7d55597328fe4a5c1bb2c97cd29bd9b00a7131fd8a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:b1f0095b74fac41c24cd820e1316ae42ea854a06c96d4827e2db58dc591f4eb3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:171fcd02053783d2679ad000de6fa5b4a5557b510f52953d95aecb0e6645ecbe
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:608479712aa5875a7daf570a0f1a77d4e53996357d10c32a629e620282ce1b9d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:965d49f115f615d725dfe2ee7cf4d3d6c82837070b99246e2129478411ae785d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:726f82bb582f4bfb5d266f6e6d9bf2c1eb9cf57a43f8fe8de14bfc243a54fbcb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:910a4c262f9f5b8aa3a606e84898534f311489726965ebf8d744bc534fd1dc92
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:4cde3ca4c0a2ad05685f75a3b67b259e6b71a658c84da43ec4b3a1b0c3588339