Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:1f71fda1b6e20859706a8bd7d779141f5ea39836b499569fff58e028737aa3e5

Manifest digest:

sha256:1905ebc1282e65b3d1f43be875b36505e68468302f832c1119a7059e9529c643

Size

2.32 GB

Last pushed

1 day ago

Vulnerabilities

0
0
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:66d3e86c14866c85bc3f452e14cbe61b5262236246bd297aef2a38fefd9ec0ba
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:8469f34932889372095300fbf34ce2a3ca50b5456cc9b5ba2824fa78dafff8dd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:6549fb0138d4cda876b3ec7e76cb3fdc7adba76387da6bf185c97a586fc08d05
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:7a0d9c87bdea04870fc9a3b1f4fcd5c1bb3eec481e3c9e3d3c32760e82c4e0eb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:8ae9efc24805db7c1abe8e9ca7529b6e8cecffdf397d9211d986ce4ce153fbbe
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:7967d517c4e69aca88b0c22e22e3633f2a45ef60097b5fdc1cc2899d6d90c1d0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:69e6dfddf45f3578bb5660405b93d227172d66c221bbbefb93a0a0cc177ca1a5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:efa8243a6f23158dd9b4f793c066b588a2cd2bfd7edfc92b2883d74875e3701d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:31c2117c7ca407f26a9ac3e268b7a7d51c812c4e8535bf1b2d03b43285f87597
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:d540342a02f72dd4cd009e7794b44562dbcbd2302ba2848e1b97fcdeb5c6c6e7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:dd15e7f433d9b9a828d6c266cecff8b6d8a1bc42b155b1f6fe0e9750342dcb97
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a7f504112f7df35a9331c2a7119a8b35ec97c5ad04f4a884992c27d047ba1ba1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:1c2c412f49306828ea75c9d3b8b1e46a8092f7852c1d6f991e634bc11cb407ab
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:3fb7c0d5fc6d7433bf85b37582e32053aea47ac894150c425e2f161b0353a060
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:2ffe52321c0974eda892d068124ae4efce680bc69f14d8d3c28f922a834aa912