Sign inSign up
Kured

dhi.io/kured

Kured 1.23.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.23-debian-fips, 1.23-debian13-fips, 1.23-fips, 1.23.0-debian-fips, 1.23.0-debian13-fips, 1.23.0-fips

Index digest:

sha256:624c057fd716e28123a28df1bd7de192e08c69928b67e6bc5d17d636b5681d67

Manifest digest:

sha256:3c68bed7d7dae993e15dc63e40559235bc5f4c30201358e95ec7f786f25d9b09

Size

24.81 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kured:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kured:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kured@sha256:2453fb8385ca05b9ae126767c88a55bdf0944b6942f6e0e24ccb383ee522ebec
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kured@sha256:9e5115ec466c529fdf20f7b3474e81bc5fa86c2ada238f28a26425164c0cc044
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kured@sha256:cf326729bc595ad84691b0dd69aac053737032632e4f0d671327adb801ecff38
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kured@sha256:eaf02fa07c7dfc92831c48cd25011d493178198ea06a5ba600718115941e3f11
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kured@sha256:b3c12408124f70d14dc517f97fcc335bd9220faadd18829b2c01ebea8666aa89
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kured@sha256:f8d83d4bca68fdef7a6fbceac5b30ab074f3a866827b2a5fe048b5ebe16de118
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kured@sha256:85669ad9f5b48c43ef9ac8b1859115efd010f5e4229cd1f1cf254236de7155ec
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kured@sha256:8ab6540eaa54a623dc382098f4ccd0b5106638ac3f7dda0aca784d8c04ade519
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kured@sha256:e4775fe866204e8b966f5c8999d2cef88fcf36b4085fa35c7e304e2d71604217
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kured@sha256:7d81754e55a61ff3b808d3590da3129d45e0ccc48db0a8da347b3b60b3cd05a1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kured@sha256:1f446e235b5c0babf06601d8a67623982051b97f322da53726ae40c91fc01a54
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kured@sha256:4777de1d16912eceb10a3536f9f063efac6330e18d82ba1aaa19f143f71e8277
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kured@sha256:8fc26ffdeabca7cef3da505b4785becc9f35ec748d279dcb501feb008950957f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kured@sha256:c327dda20e270558738787d4cf7db21ea46f0518ef80ecf578025554d57baa8d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kured@sha256:acd7021f7aeb863f8fe940bbd618701c3def2082df2493b495bf2dc64389db19
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kured@sha256:9db3ca6f6d858d38c3db3e2cc7c85938f6451299c24f7f6b6e6dfb37590f1855
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kured@sha256:0e06cded9174c0d01000df7203917dfa1d248f57b5d5eb6a96969dc3164e5a84