Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 12.3.x

CIS
linux/amd64
debian 13
Tags:

12, 12-debian, 12-debian13, 12.3, 12.3-debian, 12.3-debian13, 12.3.3, 12.3.3-debian, 12.3.3-debian13

Index digest:

sha256:8c93f14354dfc5929aeb9da33ee4370ca7862d159e29c997bff2ac6fc19ed100

Manifest digest:

sha256:ff7e623a4a4a3eea4907efa5a28e135dfdf77cff40a47e41122fe7e3aaf5f0dd

Size

89.26 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:12

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:12 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:908a419366a5582d3b793155456f86f0a0fe0725e3c04b31f608c7bab9e2ddd7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:9790d52181469049f8d284b1487fe10946d498c2d2c5109fd98d3af9598dbedb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:c074ec7f2d7d43b9f48f79a9d478a2bb2b6a407e3f85b9141e49946e4d26787d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:18c7b4abe2f7d40d71acf4850614fab5e5ebb80cf6adf6f53735b7025d1f1ecf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:590ef7feb7b327fd1f0a27f16b35125e389eda378f8d8269cb6f94fbb71b61bd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:d3394285ebf6409b03e60a483e3d32c4a3f9a7b3abf706e4348eaa3f8067dc3f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:0de9bc8ed3ebfef2d638d19f4cb1859990653283eef18fc52fafdc6064217bf6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:8ab0e46f682d835c30ed37a9ac8d0e4ce47cf2e9ab3c4fa94e93552de28801e8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:5e1924a6bfcfa91ec20e243fb692509a97b33f5a8980d94d67788713923e49c9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:fe47a932d5d19ce58677a76813fed625067641e0a577ec47e238fd4c1e392cfb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:eef936bfe8ec3bdf1dcb24c49abc94873ae57d777972c209907c4ae2b73cb7f8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:45e7d7a56e60e2dcc482f1b226f5dfd8aaf3616ebdd3d2408e2a4d2ecb62a182
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:b324cc502c3bc370373099f3c3f8f44848a2d79ec8b5b1068856ce6268a298a0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:a2ad83ef4c4fc9cc75dbd5ee36dbcc21939ce1239352902cb6ff558b738eba35
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:e9919dbd18ecbf75379ece688132ba0c8ec76bbad5a3201b8899eb1a844c22fe