Sign inSign up
clamav

dhi.io/clamav

ClamAV 1.5.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.5-debian-fips, 1.5-debian13-fips, 1.5-fips, 1.5.4-debian-fips, 1.5.4-debian13-fips, 1.5.4-fips

Index digest:

sha256:51927e3c51502c29cd61fb68bef74db29a58c65bf601497028fc40548c8e8b1e

Manifest digest:

sha256:0b9930936f34d775c79b6a18a649bc0c652df24e697e9186de1b6f712dc8d54d

Size

146.14 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clamav:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clamav:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clamav@sha256:ae58062f5741e57beaf951d90a6c227430463b17214948e3dc978086ccaa44d2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clamav@sha256:9c60966a5467889254659d28429b69177a601f29097d188c225fd78d5aa24e36
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clamav@sha256:cd348a43770a3ec60bf81f677ec7528d255442b326476a0654915dac82ccf295
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clamav@sha256:2f620928847abe0606db324c652c14922b4e22962765df3aa39361cc30e14150
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clamav@sha256:3eb9a222c1516a6508d46f6d882b21635f85e6a15aa6244486395156e5151ca6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clamav@sha256:aa6ebf42bddb293f6a70fbadb1aafb854db1f8bf3a35660172c8cc9e8f1a218d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clamav@sha256:e5cb00118d7a119a04092fbda511d4be7d0876625e3f4e02657d9db18be4251b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clamav@sha256:f25dd3fc9d86db89df6be4398b17cdb1d8290e9a63ea3ed772abd0f4b27efac8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clamav@sha256:ce38cee0745acfc885b8cfd3a393cec4f48b22d9fb389e2dd6839a1dcfe5683a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clamav@sha256:49fb08dd4705c3aeaa8059633c065dccd189f58adc2a67c4555df423c37c4e86
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clamav@sha256:b70afe37bdc70b44649d5135a125ccde6dc899b8f80735017f52eef75f57f463
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clamav@sha256:9c1127bc54046303bd0f89eba94ad533dc49d437c66fd49b21d2ae9f3449ed3e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clamav@sha256:211081666f6d90fd7292e8c09ef2fd07e78ff70734d53af2c38ef398603b953a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clamav@sha256:cf59af4502e1943435a3ddc251cedfd96a3593472b7ccfa6c3e120c2052e152a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clamav@sha256:8e3f7f2dbdfa71ee35897b19241e95d8a180629f0a3df4c2751ca9950d22b814
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clamav@sha256:2ac50d06b97ab9df232b34cc08181c422c856ebc581b82b4928c8f5eca55a180
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clamav@sha256:e95a21d832f77ee58de4ff6e388feebebfe207e3a12fca3485fce61070629b98