Sign inSign up
Rust

dhi.io/rust

Rust 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.99-debian-dev, 1.99-debian13-dev, 1.99-dev, 1.99.0-debian-dev, 1.99.0-debian13-dev, 1.99.0-dev

Index digest:

sha256:cad15faa189cc20b7a774d4504c52860f811d13d5621715a3753023ff1d64af8

Manifest digest:

sha256:300a870f42b0d231bc8c04aa52b1dd613b9b4e03f92dcf8b42208f7a77d53785

Size

347.94 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
0
34
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:86eebd8ec525732532279167fc8621e54ceeab7f2b8c7e5e175b24755115e789
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:c6f0262704a81d5d9fb08ff4d4eb6cbb9faaebd6cdf2b5fe18e782f1ab96619f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:e7d500e4758482eb960d15a0544c321ab69811298b852baac6fa2756bbed6f40
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:4e2c848e6318ad90ca869bba2e59965721f049dcde0df7dce244bfe598602e8d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rust@sha256:ff0f208b0d66961d646771ce7fa3965bbd56a5562b684794d8f0a30dd81f908f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:5f6e27c0d06064a25b4d916413573325e5565f876330c13bf27c4b55669ee14e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:4bab5a42d2c2917f50ab244c5b423879ddfd477b9c8b95edb1ee6f76557d7379
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:5a2b5ed056cd6607ef8d52d289f11165aaef072e3b895462a4c67021431fb480
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:17a377818e8ce7a163c0ee4f4b20f49fa1d6d8509fa4eb88d6eae0a0e5111c90
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:64e76a70d97617479b70e9d4a0f89efdb7a6be81c6502f40e824d394153f35ee
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:5bc0de8711bf6bc3e93f5e42c0e3aff9d0f6541224b7ef9dd2721d64b78eea67
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:fce2fb7e6e2d3ccc171227cd6311dad98aae18f739d1c188f57627e17e1a96d5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:148f75b1bb77cacc6018946e65e6021bfd57d232eef0009b7d4a3435b7010447
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:a26f5a74d70ad14973d8cd4b4a7b8f020026ef9a1956ba59ba5f77a0486e857d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:a8920d1d5a4f0349d6c1146c39a700151dd7749ff2e734120012964533e52b7c