Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.35.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.35-debian-fips, 1.35-debian13-fips, 1.35-fips, 1.35.8-debian-fips, 1.35.8-debian13-fips, 1.35.8-fips

Index digest:

sha256:6893d101b239c946f713a8462edbb3a17b15b123c45d947e9c4fc03d9d2b13c6

Manifest digest:

sha256:eed5ca4a7a3dc50195c78c61d4add847e5b583bf17379584d0ca09e6656c7dcc

Size

37.76 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.35-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.35-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:a3a6f354194a9154e15aa6825178600e2ee3b45d7c4048c709d6c0ee4decbcc8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:f9452c2513d28409eaff9b87cfe5aba9da8da9c8c3bae2591f935be12a4b94d0
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:1c83ab210f9f38aad1bab8bfd21c45007ec4bff96f2d93a4eacedff5529e5860
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:c72493447664878399f6d804800ad3ca1282c706d391056da1fcc110d9737b2b
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:e769886c19b417878b6c96f5bed6683f43cd20a18c70c680499f54e204c90e0d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:f224bfcb19a3ed75dc161861fa84e0455800e542472906cab32c16d8e247077d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:7bf2056195b0948374e9226b3d779cfcce67abad02baa0b6aba990d9add83df0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:74038fc041b7a978105d758003db0c7c828f53d5da8e697d27f1bb38d209828b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:7f1a7c7e463ea836460fe0b10f4bbf79d4f96c638c0d697d886973f780a6abeb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:3a5e6ce07ee20f39bbdd0bd83a56d689293a4e0e9dad87edd60e6bb3adcc416d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:e3f1213e633b19e1f92c7d82fd2f0d969d4444ff00aa8c3e910c9bb9346a1bfe
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:8b564086e26acd05e9a0527a95eaf1fa59f0a7a320b6faf32507e1c19b4fbdd5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:78b78e0fa2906f28626589bc10ae7122ed75d8d21094ffed7de1b0c7185f4cfc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:b945f9a9fa82377a1559d0f47b60e2ecdb925524e276de1dfe5e9171161f54d6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:7a613254267015e51b65232b139fd992b787cc7b0d20279889b1857c5419f125
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:07fdad734342e1dde5b5912b315a5f0ea44b1945e57829642c5d19670f2720c6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:de8c9ac588536857775daf206b40723f1976403a5308881fa9c70161bb0a7b28