Sign inSign up
Perl

dhi.io/perl

Perl 5.40.x

CIS
linux/amd64
debian 13
Tags:

5.40, 5.40-debian, 5.40-debian13, 5.40.5, 5.40.5-debian, 5.40.5-debian13

Index digest:

sha256:17ee038bf937cb9c75cde16c51981f842187538b544fb7705a957f12c49607ca

Manifest digest:

sha256:720da4584f7e6d78cefe45416acaaf12f17edf5e235edcbf51e8cffa7e28d9e3

Size

22.47 MB

Last pushed

15 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5.40

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5.40 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:9dedf07c6f58ee0443401e7ba78e5fcc14000c5fc118e873438e85744aaa38a3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:df520c24faca9b020cff471b5e8db2ec88860eedc1bb4204693f4d39d43da2ad
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:14d4e142c2c29848844e583281debef129de0d7fbfa7d740f1b6d8f0935b8980
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:a771e14d355724a2d64f751bd56a39e9d3cd929aa7a0b89476437f8e92abed36
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:290616a7a653f4f8dabf29fa9d37dd85d8d7db3d90fbdf281a31d48a804388da
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:a0c67bab843a836f566248da8c837ab2cb2b5f7ef0808b5a53d449b27855c330
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:0e626e82b05b31a7e858cda28ea6aae1ea0d2185c69912b08dfec7254ff9b342
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:e3e0626ecd4c88b26caad7264dfafd56fe7184bb6f68cb9eb01e472b00b9c489
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:f66facc7357263a7f5bb1c2a319b0d7e8ec592378b9b290af51bd755c573170d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:b13cf17f0de2d079c497194dbe4489f310a345adfce6f5c9d98d184b8226ea63
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:9d58291971aec2b6ee02b761eff37918ca5fd749e63d4b3e93b2cd0ea9ce555a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:481c61f64d26c8b91256a9f4bbfe1971720109bd21e11476addcc79c811c8472
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:99e60fa35799def604f82f161ae1979b35f5dba276fcfe1e39625399549e387d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:fcd5e8a3516bf502bb669a4a828d9ea96b65700137df0bbe1be57065380afc41
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:a7e4e1558bb59625500cd07b465703b37ce3244a5899b37487a6089917cff61b