Sign inSign up
Docker dind

dhi.io/docker-dind

Docker Engine (dind) 29.x

CIS
linux/amd64
alpine 3.24
Tags:

29-alpine, 29-alpine3.24, 29.8-alpine, 29.8-alpine3.24, 29.8.0-alpine, 29.8.0-alpine3.24

Index digest:

sha256:a394e953c2f911f5b46fae024dbde55a984a17bd6a2f7673899dbb627aa14b56

Manifest digest:

sha256:cb7b482857750f29af50096eb0d9a48b09f1bb9a9132549c984be867335f110a

Size

101.31 MB

Last pushed

3 hours ago

Vulnerabilities

1
1
6
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/docker-dind:29-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/docker-dind:29-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/docker-dind@sha256:dbafb3f78179cd2df4f7386c2783e3ab64702eaa5d5b42bc3c23403d1c541c78
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/docker-dind@sha256:935435dc526b30ea2ace752964d15b67902614e307710cb8eb0f2e7fea8256c3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/docker-dind@sha256:5dcf89276e08ad141e2984871971fb1be1763fd6aa557f555a1adf9b8af83445
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/docker-dind@sha256:9cb3552d73ad0d501d7eeeec96e14a1b773f432d853c0d02e370855811ad4c9c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/docker-dind@sha256:f44ef40fddfcbfee50a4017e71695f5b2827e3044589580d848640f21276253e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/docker-dind@sha256:073cf1fccddd85f95f56b1b045f44a6232dd976094ede73df81e98182cd65552
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/docker-dind@sha256:2f7f845f773306babf9e335f53efb59e681ab9100c0c0927b3c1ca882c3cb9ce
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/docker-dind@sha256:8f10aa317ae8266d2faacefe0659c99a1f960abd5c907e6b0cd40db4eda119c2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/docker-dind@sha256:4d2055786ead402bd2387da43ffca82fed4fd2ac833c316c7bcaf8964dccee2c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/docker-dind@sha256:d6f4d57d9de055a454cd32912de36d7bfa2a60f91ff3dfe966e0410d3a0681f2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/docker-dind@sha256:c80cb7818edc3ad6c9ee09a2f04410727535071e855ec192920fec2fef793b7a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/docker-dind@sha256:77778e2753e1694b33d976acd49b807e1c30c27ad0cf8e81fb0b9f2064e29610
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/docker-dind@sha256:e06f695d81abfdb8bc6c4baa2f2d25da9545fd4843f5e68e4037a0502959bfb3
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/docker-dind@sha256:8d3d08fe02a8ad3eec1dd1dd1b2c9707906ace76cf31a7d95d429f0e9a37bcf2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/docker-dind@sha256:a014c90605501215e9ec0b9c3424ba817ac9595e672890ab8ec6063b72b17663