Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.4-debian-fips-dev, 8.4-debian13-fips-dev, 8.4-fips-dev, 8.4.11-debian-fips-dev, 8.4.11-debian13-fips-dev, 8.4.11-fips-dev

Index digest:

sha256:caf0e221d6980f8931f2f17cb3612a6b7b224e7b785b41d0d70b2fcf11ac0533

Manifest digest:

sha256:17eda7b1f6a9ccab8d5c5f7caa7c213c0d4a18e21cd2e9b4e6c2f21885ef0cfa

Size

89.49 MB

Last pushed

2 hours ago

Vulnerabilities

1
1
0
2
0

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:b8f5a8afa38237f6d56311054bcf6fea8b1a003bbcf243b0992c0a8f573d53fd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:201a4ad0862999291b337c52d8077badb891f78e52e6db347d4d50f7c64aa8a5
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:9184fd90dfb9b350fe901763c9ba81250ef6e0d051f9f8bfde17bcac80179a51
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:0c685e46eccc8d85c9eec0b31596458a2ab022901c477a39c9b26639e861166f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:216ed27b33b98fbe3700a2ecff45f7f254cf00ee2923368a0a5c35011c7accb4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:3490a7a31a7cb6a39ef1b0c4149d0b1e348723e490c990422bd2f1fb4bcf76df
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:ca9364d6dc1af87597d3c58f6e212f74359a9f6542e85155fa917d5db3e81a00
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:3c0085a4497d0d850f762820cc07b21f73ed4b3f5ee6657025fd228c50989dcc
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:be9a6480111b586411db56437af2458dcc0eac5fc13cca039272cfc7ca2f5650
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:77b8c7195120cce6571c9ea5a4ba9715908ec24946830acb07adbb84d0bd5164
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:4525f52989dfb9abcfa09cf08ec86e5249f1d19b49e70d64ca2329f66ff6a018
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:eb67e6bd81dd60e397b36a6ff8bbcc0e9717da5bff4376df664b87810c63675b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:483fae34337d77e82cdd7277ac13d2ae1c896db6161960775aae93b131c681b4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:41be7d98a961e875a0cfe9a6a5eca69670e12b21a2928d81e57a043a8f1810f7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:0bdf9c37fade820597be020fcbf882c65d6133990ba419019f0504cf394590cb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:ce95b91fa67a135434d0ff2f1a1b1d600fd8af463ea62aa7702465b380ac446b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:818d85dec20c2d72159d9cb3ea9f54941e3fb395e8d6975d28ef69036a535e5e