Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.45 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.45-debian-php-fpm-fips-dev, 1.45-debian13-php-fpm-fips-dev, 1.45-php-fpm-fips-dev, 1.45.4-debian-php-fpm-fips-dev, 1.45.4-debian13-php-fpm-fips-dev, 1.45.4-php-fpm-fips-dev

Index digest:

sha256:42870ce6a1e558abac51d2eb8c7c7bd00eefa2490675a214bc6bbf2f9d2fd7ea

Manifest digest:

sha256:30790cdf62146cea61a9639d0486edd45edd8ffed8a8923446a0c956ab875f85

Size

146.83 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
2
19
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:574bf8521bbc930ca634d542ef25bb1ac2e168bce1fb882a1a207a383816addf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:158e6659843cf846a3c03e0d8ca65915f335b890d7f0585efe3d272bd8d939cc
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:f4ffa9d22007a03e6e7c2fe86f770eca811e96c0664eaae1e0b42b1ef38e208c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:cb83b972fdce051cbace030c9cabb9e8e5aea4b4f3124a9598c66831a3b0236c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:c19876abbb162f2fb0193d1ab17754cf7eabf1405b025c298b2c3d5204e25f8e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:93a29d2c0491a45f87edf877f3453d8059083c820c1cac883f76b0d609f80a67
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:cb6caae1620bc4c248f9b0c28fcefb2e883971be07953c11562212cdf27fa486
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:ac5bbef9105a8e5d288921aa889b3da74175422f4c4f61899be63df1346af13a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:d9f237293765349acc6e28b0ff164c67c038a6bbe5b669887c37cea883e7293c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:03c49064c25afb4f068a2f7bebdce816fb1cdf73a58175fc71a42b54fea7d264
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:be972ae8fe4bdecf427f7fba91e8d9ad4feb35e800faa92b0df6ae25d7b7b2c3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:88e4982e0e443be131e558f05974715b1278e98a866cc412487f4c6bb0a5200d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:0cfd854a99e58b47d07e70fca528aba730ae13766e17510eaf4df1178ab4d707
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:ebcee93acde879bcf6dbba6927925c1e164a147085209ff71f6307b379a56e13
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:892d999785d4093e248acdd55e8f89320cb43665ffb7f1315a75dc5c60c38ffe
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:6f893ae8b8d1915ccf20c022d91b08dbf311260c4a33656137bcef05916fce80
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:2d4edd7e1d1e0acba4c91b1ec228e53014444927915dde41c97b00d55c7babe2