Sign inSign up
SapMachine

dhi.io/sapmachine

SapMachine 21.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

21-jdk-debian-dev, 21-jdk-debian13-dev, 21-jdk-dev, 21.0-jdk-debian-dev, 21.0-jdk-debian13-dev, 21.0-jdk-dev, 21.0.12-jdk-debian-dev, 21.0.12-jdk-debian13-dev, 21.0.12-jdk-dev

Index digest:

sha256:d13aa9fb45367d01b21ed7382db8fb01d0f6e5c88626b206360d255f6585e605

Manifest digest:

sha256:6af276a5b98cdf680b8aab414dc06995045b09c5e82c42e490465f4c3acd27df

Size

159.72 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active until Sep 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sapmachine:21-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sapmachine:21-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sapmachine@sha256:fd7de969b56fea4bf2a202b7d7f4292c0d04e556230fec56a0a4116b1b5b1cdb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sapmachine@sha256:e6222f6f8ba6b1a2deb0cc30fe896f82abb0fb177fe26d92525676ec436d6654
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sapmachine@sha256:18e3a5559f9df37ca50139509b3c1e493f918c07c1a967a9f81af67bc4c0b594
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sapmachine@sha256:054fd579c2930ce270497a4ce3bbeca285fee71aa76332ea88f4791ad18ef871
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sapmachine@sha256:919d48d16152f3ac14b4ec9c05a95bba1ea8c017e5a3a6b48571701809c045c0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sapmachine@sha256:7d1b3b03db9c25378410093d266122c2a02294f328b5d944fb7b478f869297ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sapmachine@sha256:93b59bc088fe59e46667eb003bbdfdf640b946e928ecbcb978774c16fa016c89
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sapmachine@sha256:ab03533da20c4e51972c87f14ba996c4ce897dd8f3882a95a45a349a85262f89
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sapmachine@sha256:bd4a33b145e896b1cbdbc48ec2c7798b6d57d5c0a889cf1be4ab9c708cca7abf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sapmachine@sha256:9aa57eb2a17e80af0ad3d034d6fb1cfab8ee1680bbe69bead29683fdadc91db6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sapmachine@sha256:601d0829f2aaa9e98b07b523fd8a4066b70ce26bb713c54d2170627476873d1b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sapmachine@sha256:26a05820881ed203ba11e9b16476bf2029719e1af3450d690f9ea2ca1f50d747
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sapmachine@sha256:052bef17a8fdc02e77bbafa3995e2bd803bed96e0ff435d61843784d94a1384d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sapmachine@sha256:9e4760c737f3053e175c8320d1a6b7788bf6218a4a127a624ca54fc8f5ebae17
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sapmachine@sha256:531ae1c1771a81e1554b9924879c250a4406b6eae3bce69c2eb691f6fc715c99