Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 12.3.x

CIS
linux/arm64
debian 13
Tags:

12, 12-debian, 12-debian13, 12.3, 12.3-debian, 12.3-debian13, 12.3.3, 12.3.3-debian, 12.3.3-debian13

Index digest:

sha256:8c93f14354dfc5929aeb9da33ee4370ca7862d159e29c997bff2ac6fc19ed100

Manifest digest:

sha256:a5f6159f0402cbb1af8cc48ced00efab1408003a7aad4abd582948cf2b163d3e

Size

85.50 MB

Last pushed

5 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:12

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:12 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:43f4e8599306ae215aa207cea29f015ab9702a02ab077522d6fb3c752f185d32
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:b30c0846939e2e602a3fb666885097e89d94c9caee9c1b0645892f2ead407d27
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:06e4ae197beb7e307b3bd98b1aa9f7bdaa76b5499c78d58adf58c2370ee8d474
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:ef9c28cc6d2300e7ec851f302e41f7431f2701eac84dd67abc8147fbcad88b4a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:fc573337e0984b1485d92b983f7b4b82d1e80dd42d07d376d69a4f6e2b7c4ab1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:eb3633cecf62795160a6dbbd7b15050fe0012ab41b836c462bef75bb0cf3b641
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:dbe8edb24441380ee467d4cab4d650061cd65c124e011db1fb45ba0cedea9efb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:c6eb87f7d6f3a569f73cd8517b310bddfd2fc1309a7bfe222a61a86a7548dd02
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:35dd9de36e0120653e82f15959b6d433751462808821f291be043fdf064ba802
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:b0cf352d9df34498a7c25cacb4c81063d6cbc5f94f1ec0246391368347bdf8f7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:3aa272f3516e87c4338071d7cb0fc87d0d3b4c87715d134be3b4635d6cf261ec
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:faba3eb7bcebc70f79b0bf44eb6e75a560d90492c88be147ba78678e9f48da87
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:19b36be95d1013cbd044611e20014842cac8af28143d6263a4bbf46458c4da7e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:12fcc55f6a4b2cca940e4a40f614f15cf65bce3a4118723dd127609ad84cbc23
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:60c6f8c8695d7c564e89a08adfd2459152f66a54ec09496a465689c7084d606a