Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (dev)

CIS
linux/amd64
debian 13
Tags:

11.4-debian-dev, 11.4-debian13-dev, 11.4-dev, 11.4.13-debian-dev, 11.4.13-debian13-dev, 11.4.13-dev

Index digest:

sha256:abf012a6fe43aa57480bfc7ae93143dc01aa244c65bfcdf1ab7e9a1336ffbcd7

Manifest digest:

sha256:dee1ae27431466d9a422fa429177da55c110b89936ecaa2cabd499b36cc9216c

Size

513.06 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:70f22702d2b530c39df28de03319754f16974f6994414db21815121ee0882022
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:0cb442142fa7e7e8168888e4dbb037b1e07e32fe64277ac389b4497ced8d8fc8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:1a3aff0cab5b6c615e89d846ff555284b6dc4773503d40d52134dcb7f5e55d1b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:a79468a0aee6a14361bf375ee0866ddc42570fe5b4235cfaf1f836f81a56b25a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:6b86e4688c138b491962fcb7ae7960b8d251b832ba07d7b5d85b08a1e60c5113
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:55485de3271606da42e13696ef2a4426c73a7fd1ea036a14918346bf71bdda4f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:068bf07ec5899eee78e4769041d91a43d52b0c3ecb710f7fbdfed4d4d030aefd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:8bea5b2d733442082155fccb495a2852bc8af9206bae8dd748d5b7b6a3af560d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:1e7eac3e4949fd16f8eec893bd3d99e5f81c86d17079195a5913f146319ee5c1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:5d094ff1f05fbc9e55f29dec0d1d5215c0a534c205e75ba5877d705f3a252a3f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:4b15cbaf9e066e34d19bb7bede368ecbb1202f3f059ddd1cb1209e3274d1c78a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:fcad7701a7055ea61373f669bfedc3348c1573f4fc6f80622de9cda89abec282
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:5b0cfb977d19ec4ba7ebaea076c0a35d006009e1fd2bfedf4246bbbacb08da23
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:491f2ab308919c9358424b241405c98df88faf24fdf8cd3b79d7560b8532c67c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:ee5b585f8497f4ee4c2c026aad13be32ba75d154dc52759b7eeae55edc5baf05