Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 17.x

CIS
linux/amd64
debian 13
Tags:

17-jdk-zulu, 17-jdk-zulu-debian, 17-jdk-zulu-debian13

Index digest:

sha256:6b6d613ef73618175b0cd1261759b60d0151fd17a283790c2671b16a6f02f03a

Manifest digest:

sha256:731b77ed2e19c0fece4cc4877ea92944c437a6e2d50863f83cb4da4bb5cbdd0f

Size

128.50 MB

Last pushed

4 days ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:17-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:17-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:6c8916570a1400912d698a60a7a543c562f80e46402c476bb75303cf09aa3f67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:d02e45c1daaa2d584fc01a64d178dcbfd2d88ddb539ed9ee1a0db7709d339c5d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:31b09b82c7776faac5451aaafff74594af415e5cb23980e91af6f707653ae4b3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:ebc7c088193a93894d509dacf93c22962377789a4e59b8b76bca11964d6b5b98
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:a07b7221bcf1fbaf6a433570c2dfffce331b3b94ea5a958265c4556a9490577b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:8ab85bc841995de9f40f54e4cd8c4162a6325c9d22b37ba4dc994243650031b9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:f0e56a9af29428b7baec6150314bb836c038a94cd5f166ad915395414dcc3ab3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:56cbf5e9af234e645bf31d2ec2cf9d14e126c4e5d0a31ef99f1415c456ab7c5f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:714b7a2496844ae15985b384e6abf38bb0dcc1bbcfcf6796289649685dc3a318
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:3d1967b9461886e5485db86e2479fde5092d214bc7cba235a30f02db4f23471d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:06029b0e4de2cc1dc5b63c5036783061244cbdcbc4b55f40360615988f7704be
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:a335217216dd86a8587cecb569ce601c6065181ee7672546e1393d78286e08ca
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:bc2ec5dac1fd62ba357941963203c530538b8e9c214e4e4659d95dcebec0ddbf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:e3ce624462b70c6130c9a4ad00198419f8cdc65c1ea7c7a2e0f8b74a06ced968
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:4ce1b4730f34d4041a9ebdff5cef47eb64066863cedae467b39061e2861f70a8