Sign inSign up
Perl

dhi.io/perl

Perl 5.40.x

CIS
linux/amd64
debian 13
Tags:

5.40, 5.40-debian, 5.40-debian13, 5.40.5, 5.40.5-debian, 5.40.5-debian13

Index digest:

sha256:43f57a9b32ece40087a0cb965874bc4e09ea414643a2de15702cdf4de39f7aad

Manifest digest:

sha256:a1e299a317ba2c6d209deb34a32339c0633269a8af205943b57bef139d11eaa8

Size

22.48 MB

Last pushed

13 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Jun 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5.40

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5.40 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:dc18753e49f645c33a7bb9497c02bd236383f7b0f19dc9006ec25522c4b319bc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:6d1622fd5756c067b6f274183a63fcfff2d92ca7488f3dfacbe9c1e9edc229b3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:23e50905e3e98bff5e4ef22b1857716ff50d844e4eff859e76c9bee298519033
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:2be545f5abdc143442aa978e6e0dad2b73228ae0477f623ceef188c2cd67483a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:ff0751a3a18f31347862d8460170e71654f1a33b547e95bf32a66737f973242f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:7df00f584230d897bd7e3cf7e25a2502595d273eddcd4e77687a0b13d193315d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:9574c5860ef0340e5652e2a6753e9d94165495319e1f575c94aeb23aef111b13
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:8d714a9ad130e60b489a12b8d1d7d6034ca6ba5ef5cc3b12b9f1bcb423f88731
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:7d4a823bbb1e63fdbedc140eee63960174e4f5dc197a9035c5c4621a77c98ea0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:723b7d32a272fd06a42fb9fba0fe124d74032db3b08ec9144f4e38db236ed4bc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:cd85f9d437a07242a0b2b6f7f87b5521576ef7839439a2632894785c75878c73
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:ceda4145a9912e44d56db7bea211999b08fb1a3dcb206bc5bb8ebc8a02553cd6
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:2440645f6d584d6ef24ff4c2e1b880f6b300d027bf7214585cd96d88dc27d74a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:099641c14992c0f8380a5c61fa98a0db2d8592053da1a004fe404e1a967449ea
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:23bf151618172344fff6c33584dd46234f8fe9b4275d02d2197f64d53deeb07e