dhi.io/rust
1-debian-sfw-dev, 1-debian13-sfw-dev, 1-sfw-dev, 1.98-debian-sfw-dev, 1.98-debian13-sfw-dev, 1.98-sfw-dev, 1.98.1-debian-sfw-dev, 1.98.1-debian13-sfw-dev, 1.98.1-sfw-dev
sha256:7c5809ada5f41543e4b5a1ec27f5773dd4220968a6042c18fa6e2e70e529467a
Manifest digest:sha256:29e97df7cb0255e08a4b86bc19aaa7b3c6a9e2563c0add6c9716624c59db3dbb
Size
375.85 MB
Last pushed
8 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-debian-sfw-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-debian-sfw-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:6bfd3c1098cd4cdf7d05417d1ac0a29b88a3a0cc0deed4677fdbbf61b97c6814 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:83b728e790812ae55cd953edec32fca1a8bf77996dae3745ea2b0f0316bdc46f |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:5bec3cd36b883abf4a2ae34d940f00c24c0b845bd24d906c10588993c6e76994 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:7b2e51342932d2e2ed770aebe466e17222698ded03c3b9629a5bd35d806074d1 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rust@sha256:008aa95731adfd6a40e4113782434e3b8a9c6a3374b3bb8288f97486428ff270 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:4b66c3cd6a967d9ec451540ad4bd2280fe607ce67ddd5201d571f16fd2380247 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:f6aeeb2db3600a62e3701be463f61857f3a08ff282590adcbd8982dcc980f2d5 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:ef2897e3bbdfa041d4a35442c2e3baa0c3b4283660f81fc46075695d7a4f7bf2 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:502e66fb87274a789feeb85581f0c9982a7eb63af0fc63cd18105668478a2da9 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:0ad2c47e08b6dbc9b915f74bbfd38f9f35b3aeb0923011b99fedc13f180313d0 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:ef22714e2b81535b98f9e5c440e6494a60161e30643bdf275e1c69db4dc9dad1 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:f122e7305b6a020cd5df71b7d1fe653f255623f7eff5f91b9656237a33998bf2 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:182048da3d9394271560c3b151e27f344cf420a17198beed0cae57e57dcd51e3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:fd254b9fc9ea7e2bd9d5ff4697a08894e99b3bbe056158fb85468532c4442e79 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:242db8f473c561890a6ea7ce49ddb1e47c138eef59474db484039883074dd6e0 |