Sign inSign up
Virt Handler

dhi.io/virt-handler

Virt Handler 1.6.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev

Index digest:

sha256:592e5315aef678bd984509ea90cb72fbf60f9a1acf0e3cea8acfd84faac44158

Manifest digest:

sha256:e0cb1e22921476841663f10c8097d1415fc654976154c42babfd2110d75321eb

Size

71.59 MB

Last pushed

4 days ago

Vulnerabilities

0
1
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-handler:1.6-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-handler:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-handler@sha256:acf7006c09053f4ff5123096f281c633af576844cc36f3d723a6d2c5472e6f3f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-handler@sha256:19a8e5db2ef2ab28acb67c82db0c5264abba95820870494bab9b4013147dc90c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/virt-handler@sha256:87d6c99c5e93bcd3485e129197956869693e29a6770e0e2a0269ff880cc45f66
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-handler@sha256:c35f1e85233640a5d78d25ad96e1607b9bc4305823a2cfc20f4ff2c67513e5b5
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/virt-handler@sha256:00bc68906dfe5210d39911658768fd4271ada16aef9b6c48ee0edcf4b8f47820
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-handler@sha256:fb7c6e8cd14a3ecefd99753a9bb65670da60c0b209a04566f067b7defb70e255
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-handler@sha256:52ff19a15da4a224eaaf77a69619ffc951fb8505868bb0803bcb4fc723ba64ac
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-handler@sha256:7497da213210c013116ab6b9a1bc567ff76a1709595e89ed4aa3996b7cc5f343
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-handler@sha256:256b850bc719c2792ddd628174ce7608aacc48dfd83bd28026e409225b7ca2be
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-handler@sha256:0dfd61f0e7e16095138c88f94dd09216f514ad5d54c598191b53c9ac7c253aca
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-handler@sha256:d1c4a2d787ed3546b59de85bb20665ed365f02b934f0d1a30d6af7aa6a1a0d70
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-handler@sha256:e265d0cd4843efde0b36369ae0fbb8aeb9e885b50d9ada6cc26eec619b66fe07
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-handler@sha256:55fe5316bbba06e81123efe43d39a2efd665673039dea8b0b7444a78148739d7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-handler@sha256:d4e17d3ce082e0763b9baebfb80d753de88ecb0ed489269448afb3838ba35d64
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-handler@sha256:79dc6965d3c88fb0609d1b576a9c7ff4678d1e634fd8919906256363eab873ba
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-handler@sha256:0f203fc75f743e55eb95323c4abf792f1e2ccc482c21183a3350dea902db3cf8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-handler@sha256:8b21ed950e80eccb21675fb1c47a6545b2ef114c4cfcbe532658facdf0e619b7