Sign inSign up
Erlang/OTP

dhi.io/erlang-otp

Erlang/OTP 29.x

CIS
linux/amd64
debian 13
Tags:

29.1, 29.1-debian, 29.1-debian13

Index digest:

sha256:af7eef2fbe14f35fcbb3556ca9ccf0c64ca7237af463f9af42c1e28b28920e2f

Manifest digest:

sha256:fcd858ac5efd7f209435951a50889ce42e5fc250424ca20894d84c14ab2ad34c

Size

77.08 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
9
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/erlang-otp:29.1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/erlang-otp:29.1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/erlang-otp@sha256:2c5ef7e2156e5554da1c5a22383110980b46826492c078c199eecd4582ce422c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/erlang-otp@sha256:1b1c3b28c00beaba7ae3dda0f2d1f86c71910ee117c84b08c66b248381c07a3f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/erlang-otp@sha256:b2392b95e313b3b304c8178afc3dac03f6b7038fc2bdbb97bb97a6a3ef9ec1a5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/erlang-otp@sha256:4903863e7315a2150478903121f8a24ae1f59cbc792c2be38b9b4c9b355b4c36
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/erlang-otp@sha256:37b46774bc0c7f858a292523969c9594650d03c6b773d34e10fdf4effd3a8be7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/erlang-otp@sha256:03c1a1f29866d092a9667f21b64184fa2410d78f478a122a68a9053967a44fe8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/erlang-otp@sha256:002474ee860c05ee5ff1e17f031a3e3c26da4fc6273e6da22cb2c413028ca4d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/erlang-otp@sha256:220e64d3b4a6c6d535aca8df6bb86fe57427bb0f761b5abba428efb250b3a6ff
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/erlang-otp@sha256:efb8cb0603242260e810edca81ee4a026e4076206172d7abfb124cee2260c32a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/erlang-otp@sha256:f7eb4a39174b5e21079bfdc587a7856b3ecea0d8e626ad5ec42d4ffb8bb1ae94
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/erlang-otp@sha256:5fb41529e5051493fe1cdfd3a9edc33362bd47bf4b79107545c4523aebad6bfa
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/erlang-otp@sha256:be59a366982bc5a61f129acdbe26dfb2cc0359ad7288daef98e6949267324b45
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/erlang-otp@sha256:a5c7c5ba46d8bf03de6d630e43e0dc2fc938ada560b6245a654646bad6a86b1e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/erlang-otp@sha256:62436eda5eca17872836dc6070103b588b19b14b6eddec0cd6fd63977a9920ec
SPDX SBOMhttps://spdx.dev/Documentdhi.io/erlang-otp@sha256:b2c843a61d6940703ebfb827d511fa50be6548ce61cfd7453c65393a40f6bf03