Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:f4f4e59971ec2b63efeb1af4869f5ff71a53ca2c36dbdc80e9bcfc0d81a51f31

Manifest digest:

sha256:50c22c780c591d5995633ea40c9f3c525307ee2b07cae319e4261012753c7499

Size

2.33 GB

Last pushed

7 hours ago

Vulnerabilities

0
2
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:a9bb49e73b75c0404acb46887bf14ba7869c9a945c5bfa4a4fe465a48f0d7ae9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:db2f749ef9cb29ccad825ba51aab91c373e4f09fff18f89c5d7c11975662bd53
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:9b86805e7b0007d1dd4b65b3b78054fc34e9e9a7786ea9ea92e46bd7ec3ae3ca
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:01312ce81a29bba9ea3c7fe34c9ce2c52869240926342e24ec7d710639760ca2
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:34cbfd9879a4f117538df88ce4df5055a280f371913bc8e2e962417bf5f17470
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:3331c86f595ed7163deabd9bfea6981e580b57acd4e51f16495d584ad1f401c3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:1410e51ad4acfcfe643a55b468936faaf273bd874187da6d17d8543e6f4b1065
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:e1d8e03da29fb8b715d0de2f33ea80d98f6c2949f2f738643900959cbed19ead
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:d2bfca4680d1ffabd844ec0bb129f72a65b2832a54069dcf21e21064c658af70
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:3f3a3faf445af41458497cc2237284c6b74c9593d0b911f0e6479af14ce17120
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:db4802c44120ba3c1abe37b59152965ef78b36e9e54fa3e856e4a6fa47c79918
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:b5ca1b3395e1a02427177428d127d407e1d528ca55016f85c294c5fcf4b5dd64
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:8c8342c1064d57ea30f52a1e8b1a6bc73fa2b4af279da571924fec0317767116
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:ceb8767102589765d9ca32b98002b74c68019efef4de56016d3a8a834ce5e3ea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:9cc2683e5e6a2fe9b6d909554be2444081e8ef095ba80d2cc9f7096a22347d49