Sign inSign up
Trino

dhi.io/trino

Trino 483 (compat, dev)

CIS
linux/amd64
debian 13
Tags:

483-compat-dev, 483-debian-compat-dev, 483-debian13-compat-dev

Index digest:

sha256:8dd27374e0c4a42104ae7c395c144d04faedfbed905006e9da2b0023e6eebd01

Manifest digest:

sha256:ab057df4626fc8f10c2a6b601504523fde8674076b2ece8b2830ee0b212d3661

Size

831.96 MB

Last pushed

16 hours ago

Vulnerabilities

0
4
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/trino:483-compat-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/trino:483-compat-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/trino@sha256:78ee5bd433a92b1b63ef7dc4d5775faeb585589020efaa29541ce7ae579e95ae
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/trino@sha256:cc20f6d02245ef0ccd907c508b5c66896d6bcf83dcd7ffcd22ef309bf374d78e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/trino@sha256:ce130224f4161b707909130002a2b66164434c11c85259d3cc28bf14c9362368
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/trino@sha256:a7c36f6805bbdc1f7805b3ed3818664b061bccc0c0fffbe8122f2cd00476fe57
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/trino@sha256:83fbef1e1029a88ecb50497f4a1000075339a3ecdb36ad0ebd8cb2fed9ded13f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/trino@sha256:5dc2076dbe038c96d748c299e45e6e8d1273ab7abc3ff858463aab9f7f32053c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/trino@sha256:b5398feccdc08a8c3471d8b4ad0483cf39da092076b73076dbee398611733a2c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/trino@sha256:e8f639dfaa346540a145da6949e9fbfe43c85e8a7da9d129adc74fdcc64f3a71
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/trino@sha256:7024d206cf5c3a2c3ed7008287abbf68a81d7f75d71b6187170b034d7801021c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/trino@sha256:8ea8bb1520fa6271adc2142b32f9c963915097c85eeac845c2efa5dd7ba32fea
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/trino@sha256:a245d90fafe7d166afc6258761e704dd6e5a79c49ccf008c0d298fb562ac0888
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/trino@sha256:b3687798233b335c35d7997a68e0e4842a9147dbf7be2881c67151e61a5eee73
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/trino@sha256:5f947829404753ff31ed797b98fdd3f710c8dd912ddc2850b8e666110fdf5697
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/trino@sha256:bc75334d56f1f6cb00492d576e9bacb3c522b58feb3c8ecdeff006ae09b1239c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/trino@sha256:ea9e714994f3de6317f442468beeee955f10a9aec28fc98b3b29717609a70d10