dhi.io/virt-launcher
1.8-debian-fips, 1.8-debian13-fips, 1.8-fips, 1.8.4-debian-fips, 1.8.4-debian13-fips, 1.8.4-fips
sha256:9d84464557f8961b8ec814d83d81fa85f5b5b5fb92bab16929ec90ed2f20def5
Manifest digest:sha256:d8bd8698f5af9da087b86fbd6efa95e0d5169e501e8bb903b20b84346bd29bc8
Size
123.32 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-launcher:1.8-debian-fips2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-launcher:1.8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-launcher@sha256:5c5b7b5d1c26b34f8b3cad242a81010456b74b7f19730d4bf51c7045ea481190 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-launcher@sha256:508161aa0c904dad447c78a37d50262796aee2e4a7be2ea4dd2a196dc0fbcc4f |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-launcher@sha256:ba6a929746f6f980fda1baa896537481ad2e50aeaf42595cb7dd27f7e6a36731 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-launcher@sha256:30c538ac88a969f7bf338b4590cc54ab2c30c40d7883b30a0403c9547a8cb718 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-launcher@sha256:1838eba3851e77ee5bcd03892b336af2da18ec81ed10cd03f8a3f6ccaa68b88d |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-launcher@sha256:9620e3eac275c1092a312690514d1efb108a0291fd5598217f27e98657f60228 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-launcher@sha256:513e7f6742392f5cadae3ae603dfbf34bee9321669f17516b9e0a1ed1c5840a5 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-launcher@sha256:f87d883e8af91fcfe3b0bafdf0e205c9a2d27cf83e8f0a6e7eddc24885273b26 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-launcher@sha256:1f705734513c11e9db933bf3d625450b50c308798507e2686dc12c2c2ca48e8a |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-launcher@sha256:5277c4f656bfd1ed64142a50c02823ff68f0cfd6ba8509a1e27489b81a8df9ca |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-launcher@sha256:da3d6f00d6187dc6db4ca0acaeeff1f2ee836fbb579ef5721b605dd1a9b344e2 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-launcher@sha256:a5f5626f34292a7b97c80ca70840ffcf7b6534fd94fc677e88ebe919f32d08ac |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-launcher@sha256:b5a52cbc0df8029416223cefefa0e069c036bc21bb80db09f66efbd60a598ca7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-launcher@sha256:d1ad449e280d3926dbb9b58243240303d0d12debb9b301fb97c95d903148aefd |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-launcher@sha256:056f0ecee32d50e7b5b699a86641395713eb3e53eee55e0c813474c151d326bd |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-launcher@sha256:8a0731ee0952fcb716197fba9a1878abe7df9c9b178530d478e7cfaea242082e |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-launcher@sha256:11d6a2d6d3676754a98865ba09164355fa741e60db55f6f259a9cec0fd81e22f |