Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.3.x

CIS
linux/amd64
debian 13
Tags:

3.3, 3.3-debian, 3.3-debian13, 3.3.1, 3.3.1-debian, 3.3.1-debian13

Index digest:

sha256:15890aa6878d676377a785b1ebf20e2a077bf45900dde629e38d73535e0c0305

Manifest digest:

sha256:1a83b11b805f18665abe69053a45078c21737e86ceda74e433b1aa2d454b216b

Size

59.10 MB

Last pushed

2 hours ago

Vulnerabilities

0
2
1
1
0

Support

Ends Apr 2025

Request ELS⁠

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3.3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3.3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:e7a1bbf97e13203665e52a26069ab9784fe08591bf7a3990509a3002e0e7c21e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:f56dcf8c661fbea98410fe434a32303f7e4271520627fb79ee6cd73956e8c305
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:c31b9316f1e98649b58843e37c524e771e433173f0a9c934205e3129fff6e8fa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:b97ba74a2b7c05c058813f484bf42348aae03bde6a0388125b289284ae2c57fe
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:b8fedbf1dc5fec4121a3e185121467bc5da2e4ef37c8a55ccf058adc15766cfa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:ffb743acb1eff83186661e95f8f6a83a8e8ec6c0efed08a3fe9f552581bc9de9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:b2bc07e5139d0b7841debee432e3fa33e25b6bf87efd6f9fcb604ae44b17de93
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:4ea519503ef1bb10d95b433330b617bb9fce2ff458e361e512b0ca8ca239f2fc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:bf76a2719534ab56c60bf1906da0534c58535da108c3350f73868ddab33f8a43
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:9d630137a268e5f7de5159725d3753c6356da8c32857fbce69484df0604bb6be
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:05ea469c4f3b080f022b21267ced058003192d2074ac656c8ad4f2a3d9c231a7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:f1823f7562f01fabea792fddb132f1f3ec313ad1409ef027b92ac51b406556a2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:b7df887d9e4b57a2dcd7fe9749469db25cc4ff24bd8a0d21fe29d916dac62807
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:98b9255e320c1c0bd4616f94f4ce2545ca055693cc02a40c24ddb9314e5694f2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:c489c749ad2cb95362d21d07da61dd00267ce2600a8e4f206cf25b2604cb0098