dhi.io/mariadb
12-debian-fips-dev, 12-debian13-fips-dev, 12-fips-dev, 12.3-debian-fips-dev, 12.3-debian13-fips-dev, 12.3-fips-dev, 12.3.3-debian-fips-dev, 12.3.3-debian13-fips-dev, 12.3.3-fips-dev
sha256:177e5b8d1263c197c0babe5207b9af4ad2315439bcb01573cdae54069190028e
Manifest digest:sha256:80a596512c43a0d79766252400f0a1c3a1078625b6431723b277bb48d43319d9
Size
575.38 MB
Last pushed
5 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/mariadb:12-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/mariadb:12-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/mariadb@sha256:9797b18d932fe3b3a8282eb33b4bc12ba86784857d0243901872d676d6159bd1 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/mariadb@sha256:b204367f216b8ebd96ed0650aeb3a930b86e5d9cb983dec79fc083babc117955 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/mariadb@sha256:f9f4ccfda8789615c1bdf1a871dfd9260aba911683379a273a9a2a93f90e1875 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/mariadb@sha256:9fcc70f53ff789b58168897aa613b676f92f3d6fa38cdf1d51f1d9e608b755c5 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/mariadb@sha256:41f7d0a76e92a133d46960e39b050b7268a6e3c08867beeea5f2b440876e293a |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/mariadb@sha256:9cb9cf5e0067e52b8fca5a48dae794d553a733705ed39dd5c4d6012547f23887 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/mariadb@sha256:9ea34e8bdb7e934208a2a7c65e6187565ee6c3a172fe9ee3b199fad2f8adeaef |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/mariadb@sha256:e170b18d9e570d088cbc0518e9f3420a9fa72dafadfdf9e214881617196d34aa |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/mariadb@sha256:965d4baaac5bd68e9bca8ac3e4829c9de94220276849dc23cf530e00de0faab0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/mariadb@sha256:df3d529cc621ac3ae0c5487c9e815df45bf298f748d182fa3d68d47fbae340f8 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/mariadb@sha256:a4824f82523c923407bfa02f8e23d1d1203adcc302a5ed837d481144ba6ec9de |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/mariadb@sha256:fe047e6c46ed21de86938a14dcb34b5c5c0d3b2743cb79e0acf343fd28e394dc |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/mariadb@sha256:dd1533b49cf486d802ac550e156212a4cf99981c8da29115f7ed5d9ad35cbe4c |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/mariadb@sha256:726b98418253550959d9957a95da39a965f5d7c669cbeeaab8fd8051c86c76d9 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/mariadb@sha256:828f1fbd91b11fd92520085bf42300876d77afdac099af9c7a277df40a78b739 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/mariadb@sha256:2497806af87aa2a168e87f1370db56c5d556e318e5fd2c50aff6fdce7924bf26 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/mariadb@sha256:90db5dbfc07de2d9174b1e35b44721f2a27cf392964eba92c7b7f8fa97bfc8ee |