Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:1e8f2aed6809b5028e1416a0e34f39b2ed293ba0eed33632b982c45807443030

Manifest digest:

sha256:766fdf8e1882435e6aaa8fbc7be6f283864107f3346a00b091e8e0f68c29d376

Size

157.39 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
3
19
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:c680bf65d6558256276e3341072033fa908cf9d7b5b992b5be41f1bc694f5826
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:c64d89d77c2d890b222f2f9a8a2836daa913b037be65e3ce4f15e4f6acf57d4d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:34f2f2ef8b092e7e01b15e4abd9ac60079b7c1f5b3418e504a96cc5edf1d8054
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:1d210a9eaddecb5fdb1c1367a906008236a79fc806d85557729a164659cb4c8d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:68852dacfbbfeb068d0d248f3816919a23bd96f4557be8edccfbc68e8e2b51e3
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:b60a8320935273d9096762f0e72f003ebcb8f0469f1fc441fe21edfd123bc196
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:82571c011c361d20ba28932e5ea708f2191732aa5e9b05db8a0442f15188bbb0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:073b26e3a7c290c7e6b56d20cb8f33c1a7d24343703fd7b781e9eb63a4f07ba3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:be69f2b778965c96dda56f2178d5045c58083dce8dc551c9046111e0c4322bdf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:01ef93904afebf884110a40e9859478f666c81f65eee3e40dd6069769d1b3a73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:2de02443138d17d433cb7d8b361f9cbd383cffa6182b4922533404a6dcf35e6f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:949c6069c753d8df7a0569d873d24dfd570f8d634247ab95fe1f44f810a0b8a8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:bf937a8673256cfc62075cbac1db50a795f1bd857bda407a84ecb2f7fa021661
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:3c3f02aaa7275c74b4aae75bbff4a0434a93026e226c74cf628308958357a723
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:76c46c939c84fb7697bd278afc3f88308309278a0de2075b77951345fa8bfb7e