Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.36.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.36-debian-fips, 1.36-debian13-fips, 1.36-fips, 1.36.4-debian-fips, 1.36.4-debian13-fips, 1.36.4-fips

Index digest:

sha256:43df5c8e5b90f12c4fe91720df8debd59a384e6874a1d1929aef80eaf4f3bdd8

Manifest digest:

sha256:ceb8585cf2a2a8c2d5029fd9c903bed8825cd8a4d3ca7e29469f27d163bb70af

Size

38.12 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1.36-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1.36-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:b5e6e2c6eab6326c1cafc1e99e7527ef7e4453b369c958a94b4e3f3ae78a8210
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:6d2b3f7d179963111d70afef1459577809c483fa330d8340b61a01ec04670c44
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:df83c9cc33bf44d9b489f1fae220ed435f7ab050feb49e1ced8e2269ecff345c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:2d66b4ed7efe75e71f55a794e9c83bf764e1060539ec5d3ee2f2e84b822f7ccf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:674a3eef4f6c923929cad501f852f546648edf71fce902569ecbeae7485b568d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:ef354c6b6ed9fd169eae8266364008cf673b27281a9b0815a4aeda4cda61970a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:871fd92eb8107a7a246601b80c4189ab031b5b60badf530ded7c2b30e95edff4
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:6f230fbf533b517656e87e80a3f24d67498a4e2bf1550b76749df8896cb57ee3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:21e32d5f79b1ca6324d0bf4a2272bc131fb54c267d9b59e617a924f6b4165b05
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:aeb561013c689b16e2ec9e5743343c1487e015e39893b90794f2b4f6e5e1e134
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:17b1d4e17b07611f6bd0a8078ebb1cbd0986be74a50f36c1a25f787beea45b1a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:381f3f432e9b9e5e56434221bb85e6a8c508ee80a6802d8fc3a97e8abc988108
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:8123cb6a5d9ff6da83f88c2617c56c0ca8e7bae85aa54673ff2624fd4e71b069
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:fca9d43b9615ca4e5077530dbaf06b64ce30a748939fd7f473511b464feaebb6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:130f4fd9d057fd048d3b5b190ff1c845f79604a665348b8ff3e388ab2118f357
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:39aea3cf1d092b905e318e2f9161ffbf4fd46eef8b0804a52a8f17c0a03bca60
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:6c9a7ee2b5efef043fa624b72c49193bd357a535e6fc693ffb9d3995c8f7a9f9