Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x

CIS
linux/amd64
debian 13
Tags:

11, 11-debian, 11-debian13, 11.8, 11.8-debian, 11.8-debian13, 11.8.9, 11.8.9-debian, 11.8.9-debian13

Index digest:

sha256:9dc6dca4924fa5020d32814d81573b11b91d7ab5863922d29825dc34c83ca4db

Manifest digest:

sha256:29cce55a91ca7f172ba094bfd8d6a09d22174dc0e8023a8a3adac10dca14ba04

Size

166.78 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:dedcfd1c22c90e2a65c6d8ad676fcafb39a6cc430377eb5e9d74478b904e4f4e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:6b2154a34be5736e7eb232ffeb313787c093b135d7a87fe723f97d06072a22c7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:aa835d359fb17d98fe84df31138911974bc4d5eb68db10b75d6da4612ef6b458
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:acd49c41f2d0a3980a07282284e5934847735bd136098db8a4ac6d6de47a98ef
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:b43b2c3cb48ecf700430503332845628b2bbc20d085455fd5832e835d5977a83
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:93b1d5810856fa5f91a9d853cf702315e5a5eb502fa4478a986cc95feea5a6cb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:ad261ed10e345837a8a85effcb7fc68740559cba94f2d32c430ee40b2fda1cbd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:ae418a8c53980c5514dfefd59d058929b08b6a36a5d2f127f57c2a33c03a95eb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:4f06d657e5e6d33db420224dfb032f96d9a582e0bddd24d3932c857b1810b56d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:5e29397dedf4732986b07f798bddb0ed7c90523f99cbfc1c9ac75f96f3516d49
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:1f7c16ab13ea8e00c23761efd0fb044c688455885b1f518264240472e25f95b9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:c2c24c591504cf50d95052cc0f77da907696087cf7e03599d9d59aa5cf389e17
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:1448725bd52f8b8e5adcdb5cb9a9dcde0592a3eeda2b37caf547de3bacf00efb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:7df10f8fafdb929fef7162a30b02053892e449359e745bd072fea91c81fee44a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:2743abdd890200830ab5c006517c04303c45ca93961a21b6604aa12c9ef7fb09