Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips-dev, 11-debian13-fips-dev, 11-fips-dev, 11.8-debian-fips-dev, 11.8-debian13-fips-dev, 11.8-fips-dev, 11.8.9-debian-fips-dev, 11.8.9-debian13-fips-dev, 11.8.9-fips-dev

Index digest:

sha256:f51cdaffac37471b4341a76d89b96ee8ef46cf96dbd3260019564aa0f4822bb1

Manifest digest:

sha256:d72b4661241fe6a5493e722b71b168c1b59372a4876d1aaf2ce16be023899ef3

Size

103.73 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
2
1

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:2b0a984c157daa3fd4ec467d203fc7f8ff01433667331a1622eb7177355f1ee7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:57584585fd767b145148486488c660d138197a6df957217e3d4dbff5f3d0c74e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:15cb279336a2803bc178c0b843d176fd3ba0ae2ce603dce39f799786aa378ad4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:bf5ba3d8932dd73c04eb903d4e9713810a305a70ce912fef96e1e3ff8e0c6425
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:00547bf880e87b398a57c8d5239478fd1eed9c4802df2e1311ba36e8c257f7e5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:d2041d747cb4c15bfa90c9e494c26dd1792df899d868e9234009d240f5b34cd0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:03c710572ba125b10124d554a0c308bd1aa25879462bb5a46ac409d489f15fab
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:e20efd0dc02e23155244b19c9b0d5ee0edef5e0187a2b2b436e569305db8a445
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:f70a251916e643fd0044d93bd42dec38e9a097eed55b47803cfec2ab48dcacb4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:65295b991c5a9b9644293a1edbe031d82dcb8e7fed55dde921bf207fcfe25a70
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:8a2a35a2a716504aa662d086fe2ea9447e4603285cb7d95be662cf5fa827e008
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:e516a8dbb89ff0761e2d252ab9f806213d0763e24b097237a1e07815a9c4dac1
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:9793888b37a74c480d6fabba1b6d847b22afc0f980d2491c107035ebed42d236
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:76dc3727d3234da47324cd3f4d21da508d27a541d8a5e02879144e55d18a3478
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:5352c41322a0f4352f4c18ee8eccb2591e6662b455222f85013193fd9f2e3dd6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:4cde83bd2f783e367c300a74adeee92c50666f09a263a08d8be50c4704bd7a50
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:33829605ad90379110947e43c1f4ea9d15fe24cdc3b7e633d7e22f694eada231