Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.23
Tags:

11-jdk-alpine3.23-dev, 11.0-jdk-alpine3.23-dev, 11.0.32-jdk-alpine3.23-dev, 11.0.32.9-jdk-alpine3.23-dev

Index digest:

sha256:eebbc7c5dd42c9b76cce772a62a5813aaff0ecbb50d4b54bfc9fdc4cddb056df

Manifest digest:

sha256:2a91d18febe348af38fe91f133bba71a45a6a236a69bf40494406704f32be3a3

Size

174.28 MB

Last pushed

18 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:c6d8661b4b307fde81b09f88f2bc5a42c2184ac567b9143fe4c6ab2e570042bb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:216e4de3fb1e2b61fae39a6a2f000c9d2ccef846d202aa5941770050f3f155bd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:768382d617a15178281f214bf7b61ef7b1ddd52f18e6af00b9d569c88d4cda50
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:d71c3ec5ca5fddfd59b1dbee5f6dcb879f93213955ee707006cbdab4b78f762e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:77efe3185419649ac771593472400fa1771ad9b98087d577d052a8cb8d0287da
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:1da3b9b7d4b6108d8a45dceb80eae78d165534318c662b3b3e44bb7aa7619a7c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:928f2a47d98831f80079e7ab9b39f9d100c9f247664a2aad5350039fded5704b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:55e8aed1ef520d017b62c2977e8e1e137907b98a0bea0f416b89f48836302caf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:0acfa91ca6c5edc9c8f804410dc6e14769293594b74e80356769dc26e0381a73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:842a51fd275bd514a644ca517337e925e2f4fbc40a6df8b061756505ac67f01f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:33f6062caf2db5807b7c285fbbffcc7487ba8f7175cbf02391bbefdb178e83e8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:50f59f06e53fc94989d24dea7d957fda504339c605fd46aa35b776104e3d675c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:1cebd7485400746827708fb2926cad4955d230b1112344560358741891830c23
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:8af1ae951a395c0d00d35079fc6f52e5efe44538d5d08350d9888802e4685c83