Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11.4-debian-fips, 11.4-debian13-fips, 11.4-fips, 11.4.13-debian-fips, 11.4.13-debian13-fips, 11.4.13-fips

Index digest:

sha256:42b7aced18c5e7271514e0e39f65108ee9f8d6c6e06ad14c1cda783c0fb0e449

Manifest digest:

sha256:89ce895c634272546699c88261276a426253578b43cf31ff4b482dfc9b45750b

Size

90.39 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:5f51342759cf112dd2a72402f566f44fb185a070467e31a1edb979528000b6ce
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:375df80e23604a77e43270469b0fa71e7f6333303f52389a272a1b4d656a7d33
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:6ece3186ee53318d506873e6d2d0972308bf456865fe51d6b130443705992348
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:aba37253fddf76cf59943dfea2949efa7ec757b86e6d96f27dcea4b169c9c4ea
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:b0a50a8ca9048edfecf6798a6e2490475853e9bb546e146b20e12520e44c42da
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:b3b4b8b3c328fd6ee53f9c8eeae15701be88eeb455b83ca617b39900eb340567
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:325fad89600f826605df0ac958cf0ec00682376549d55b960bbf9f13676a53e3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:6be3d3215bbf676345baf0a2bca7570f6db861d1f661f3f6ef990d57b18b5a07
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:334068ae7c4b9cbbf8952c3fc3406868968e2744e14aac1c749a0d4aa074cc47
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:caf82eb498d206361ca8781bc83f10515fe9df808882276a6bb5b0e44d05e2a6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:e34fca84461c563508d9f05e7e63b138dc94574417bc0bb304528dba5cb0549b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:efca1e52d3f036e9a6f6d1173cacaa3d71bde8f59c6d40794976d578b53948dd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:db6c00d8d5b8a040b2742908ed904b1dc6c48d19808e9e4a40125a91a8128d4d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:8cc3e2f8deacddc22b445b89d8ac0a0a2c4ff8340a04cdca2a7ee7ddf97b2dcf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:9b811037527e7216cf61b148e8640912d8518e9c3c2ba07d1198a7675405bd39
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:0dea259a5f8983441266520ae59f34d03d2629507a2a4e20176eae6afc467643
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:57b3e828bba31cc5b3a0ad94e262e8381dd29e7f9044569cba873c2a52dd2e0b