Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.7.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.3, 3.7.3-debian, 3.7.3-debian13

Index digest:

sha256:b21cd545bab5072537db33cbcb699486e84dc0d78f91c29f51d7d803317fa2ad

Manifest digest:

sha256:c5e6e4fe58da4afdfdeb4fb255537521bc1d15b6c5c6b2711babf8fdd8258907

Size

61.14 MB

Last pushed

16 hours ago

Vulnerabilities

0
2
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:22d66eebe0e034c7e6fecc225eca467aec5070b7a0ffe4bde7492bcdb54c453d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:def0b9b4d2824dbdeac28fe5762a6cc7f512444344b2ef10b84526faeb8f642e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:43bcf30fec8ca07232b03947d7adf5957910ea4c74c50979998614b3b2046726
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:0db07e0de620aaaa2d27dcdafd126294fd3296e530b88d58c4811e5695fbd9b1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:c2b755297b7d9929925357dffe68dade59a46cd65cd68b5d33aabb24aaa7b12e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:75ac545718e55eb2f839d2c6cf4aec4f6df471d0da6ea5962bc7f9eb0d841cee
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:f425fa40ef6189d389c0993dc02eed8b67d7a160411de5afe488b79fde06b1f5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:b1907716fe566cd388b6764b09eecb45642222e885aed2ca235148cf2bcb1011
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:36dcc0bc9a8c33a2ba32bd97aead0f264b3a7feb0f20549547c9d69d03d6ad1d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:04c097e3d460af389c82d5f938f14b67b139014e290ebfadea1f5535dba21bc7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:4a2aa664b8d4876966e1707f58644b62ef629f19a49037e9da3955b929c98708
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:b0062db9cf6d8d7e2add9fac3d350300a601c41b066efc46d5b4b842f7e018c0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:8a33c3550dbae32482874855e39440d337b1577e246e9f91fc5e49613c77561b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:d4f42e635cdf8327f7fdec486d859958af957ac3ea1c906cb3a8a4e4c4c2703d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:817c7f0d0cb5e24745075c1039c228cf9083bd16a401291999a5892bd3912674