Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

11.4-debian-dev, 11.4-debian13-dev, 11.4-dev, 11.4.13-debian-dev, 11.4.13-debian13-dev, 11.4.13-dev

Index digest:

sha256:b25fa9b947911592b132769dbd5f26e3390991cc3065d6be7e08ede1b8de8adb

Manifest digest:

sha256:563f0c4c12cdc9f25046500c2ea5b6535cb3477fa8c8c0c4514ceec682368b38

Size

513.06 MB

Last pushed

10 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:bb1d2a70e325b88e378187f63afc8c1bbacab468da7148474730e4764f896c29
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:3f83a5f18322ac288af0e89f9556a433965d4e871135828c1c4014c6f55373e9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:43013989398556e64edc9da2de1ccef795e408ae09617ec05a09efa9d5e165ed
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:18830158de10b58e2c5ca6eabc0f25d15d12d33a806b62e91802d88d6477c329
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:22675f47e7c2962f188248675a7c737a0ac5b6ba26ed12f4d9d083cc000a46a9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:b6ddbdf556ae441ffa5f8d87c6e492659f603a2fb050e3070e7259590e65b45c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:c70be71991e3ce0b238cfca893fa0056cd15f18088e56a99b856797887d6bc6c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:5b0de919696b405b4a5290c2dd60a4f5cb2084869473fb9c0573def913200d62
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:88d4dde94e5f247ace9ace62f89bd29db93e6655ad70da80ffa73a253ef8c865
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:f59bef7c10333f09998978cc4cf4c14b58623807c095a772e420c46d88a65403
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:f743aa72f02f6db75b64a9ac38dd6777f9ff6b93135582ad10be15254ee86407
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:cd9b2bb103ae4a02e6005ff5a8a18a262bf6eb72dece3e9879c79fad77aff284
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:da0a29ff65a110520c5319d4d51e488024af092327c99ae5d328938c72e99545
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:825fe3aaf399bbaa20da76862fdc51748c89eb52bb5edca701dc0caa2177148d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:ecfb0031c03b199c15d2f69b69ed182c0ef1b994caceffd4ee0449fdd1a5dde1