Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.4-debian-fips-dev, 8.4-debian13-fips-dev, 8.4-fips-dev, 8.4.11-debian-fips-dev, 8.4.11-debian13-fips-dev, 8.4.11-fips-dev

Index digest:

sha256:8e9a3ad4c6651bf44c340596049db95c73f5c8b89b999c0850135ec651c4d0ea

Manifest digest:

sha256:6c764a96692be07d957ae67037d57300263cb827050de702272b0fa7ac9140d9

Size

89.49 MB

Last pushed

12 hours ago

Vulnerabilities

1
1
0
2
0

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:f2b078a5d3215d808f21191e7d775fc3fff762a47e913c3d10f3a5bb07e8180c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:49da641d6922d74bdaed841555b97a1ed0c8af5d2cac35007ce586bdc9460a2e
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:bec891b476a7db55438e687dd877d969593ccc20136467d9fb5a81d7922d4254
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:05fa275c23026f7a346fbd69c4162d9379f6b7c1ecb6a95acd81c7a34eea531c
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:7c9f2d003dee5587862afd448b4132674d4e26426cef5dc5c18a09cf1be1b5e8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:dc9260cce3168636a7285e7889f346e12a6b94ac34b432833c4de28d12a7cc9d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:430446f30769ea6fb2865c0e777bdaa896db3f64363008e15a7b96c8464959a6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:9ea6eaaf576d60b6b0dc7849dbb71acfd6349a5ce5937979b46d31915f4c128e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:080c4f713d2eba7e61dbc8972ff8ef2f130104490f7739d6660a785cb88816fd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:2dc675e42e95206fd6f1bd3499dab077d9f41c441c6e5c58b1b70d383fd6d472
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:dd262a410d68cfdf00838b6b9a62e745057f22cb80d1d3b411bc5b6cd72551cd
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:41ad92cc938f244cea927e437e58736175ce18139f3e924b0448609ff95423e9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:5dff1ac0369bcf1958709c4d2bb0009bcbcf741f99344938d466b4193eb95df0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:230c04a0d42729b921ca65a8997538175c83536f5ec36b1aac82efa9daa4a69a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:5889eea45fca782e14647acda2c200d3a91b311488d1829de42087069d2bbbd8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:ee119a9cf41194e2ef5c7ebd940699618bf0de693f5d33e29477d6f5d23c2b88
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:310260a793683b76cfe6d8a8d2ef34da102e3160fc7bfbfbec4afe5c74859749