Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-php-fpm-fips, 1-debian13-php-fpm-fips, 1-php-fpm-fips, 1.46-debian-php-fpm-fips, 1.46-debian13-php-fpm-fips, 1.46-php-fpm-fips, 1.46.0-debian-php-fpm-fips, 1.46.0-debian13-php-fpm-fips, 1.46.0-php-fpm-fips

Index digest:

sha256:e177eeffcc9af6513c1af3d23d0ae137a895933283a0806f6204186ef63c8dc8

Manifest digest:

sha256:7baed47135cb692d5752504c1672197d9c6c28f0c21700c1c9d2ce9e4a5426b6

Size

149.36 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
2
18
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:9c2ed6e019cdcc152aaf91e3655860495de0bfd09cba6a35719ecf7560d1c58d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:27df0903040534c3e59a42b4949ceba9f31a727db2ff54c9d6bfae16c7291612
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:e5c36946e26a03e2bd133e0e5f81926b12bf7fefe28fb8b34902f0009ff5f02f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:9892dd8d26ab3a930d47a556273211ece5d067d239f84aa4cea687287ce479cf
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:70fa82519e4d873cf44d1fd62f831122136983c2f7bc92f1c460c4fbf3f5ef13
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:a8a81d82d851a1cd5b6c6892ccc3344ed155525e3368769ffae9a882c3b37c85
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:6970c8459e045ab2b0d6c793f512aba2c27be78483aa1d8f6600cde01057748b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:210144a5ee009c293209c6b70be941643183e8a0a4420014d9e69cebc5cd0ef3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:dc8c9e4a1659f39e4706ca8d5a4f22c1f6a59d63e92d60894ee99831bc1002c3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:f7aaca8f22fb6b778471e204134b81c050b238992b5197fa744722a493450c10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:ac3db6935517bf9bb6fb58127472f3184992f91c55b673fa9bbcdeb869f07b53
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:0a0236a210e97e7168cb8918af03fd7952c92aa406a37e5a260908a4bc0e9ba7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:ae256ca0ec66a90103495a63fb6f93654095d7b3c9ea5def57354a637c23d26d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:dfcb002f01d999d3191a99f315c224f85d3a35dc2bbd943573b1ec2b4f284ee9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:08998c12529c4ea2f727d9bbfbc433ac458b401a2efc97252da7dcb205a9cd0e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:bf2787b15e2af993a65f49d07f8a18b3fa7e948adb806553679ad37d0c86f165
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:c26388e5030397dc945458f743966064f816e891cee361522f564d2136ae06df