Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 17.x

CIS
linux/amd64
debian 13
Tags:

17-jdk-zulu, 17-jdk-zulu-debian, 17-jdk-zulu-debian13

Index digest:

sha256:58664a8a70d1be8424ff996b44a28b5644713fdfb8ae2722e226b90cd796e514

Manifest digest:

sha256:563ead4b3ff9ae0378cfd17a169aa42998134fbbc8e8d1f7ed7a8bcac11273b4

Size

128.50 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:17-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:17-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:2d2b136a1db887b5fbe58232120c92ba40391b4fb7706ef84fdafb0eab6468ee
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:12bc692d89819b950a231cef54595235feba562fa494c505a35ecfb030c79538
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:734dbe84998a9f11cb25bdf63475022b6d1214e4d99d769f314f970208ee7d43
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:cfaa349d1cb894ba51d2a567840c755456c0944d9905cf3f34dc922f992be5a4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:803c09259717a7c8e6d7d7ed62ca2ef165a6ee5e842973428938a9b18a63098e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:f6f8257b2cb28020f599ec13ad8cec0c978c80066b54a475c6d23cadf46ec2a9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:aff703857afbfaf14046423742e1596a594bcc4a5b35cdc823c2910bc907db79
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:1c3e02298a6e6c1b8fa9bace052b533c4a0250113bfe3e16a0616845199c47a6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:09e64e6d51d3f5761882831ce41c9dce648ddb07925bf70fc9f19db99fa97a76
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:061875d0b673d293c75d596347432f241fd527bab5bab4a13161c13546afd221
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:4609c93d8d2ff4b8decb5cae810df99e6d3fe1cce66a830ad15baa31d75a02be
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:00d8e6b9247455a65a52c15473eab20db361fd5c317c7e612e9fb9e7402239fc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:2072791851e1fbf027feefae846e04523b695af7d57fa3c996c3e7ddde9e4165
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:a75c041f1e4d1a335a9c7c52357fc6671dbf5b66d60c15eb8104d26be90f57e1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:f647914bae530fc23b4407e083d2fb14d2231ca5a861b72ec113aa973947ce31