Sign inSign up
Perl

dhi.io/perl

Perl 5.42.x

CIS
linux/amd64
debian 13
Tags:

5.42, 5.42-debian, 5.42-debian13, 5.42.3, 5.42.3-debian, 5.42.3-debian13

Index digest:

sha256:0e6ae21d9c5bc4d48bf6b5023bdc168120469e014fafaddaa5b574b1a53ae553

Manifest digest:

sha256:ed7e04fa4a8344b4fa3dc1a9686aa8c21d63eb0e2ca9adaf0aa37754a5af3105

Size

22.71 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5.42

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5.42 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:f8180a9227305fb6ca36f4f912d7f198ff6c60edc04ca201e1de8aab6d0566b3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:ec331670ebc4102b8e536bdc3a1880c820b95da28131643881bffedeba6cbde2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:8a16764d136e0ecc0992b503d85e6643e2b926a20f8c63b83bbd636e8f2c792f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:07cbe0978185b90d5ff7dba7e6029a9dffdaa85e93dd0a8dd5b8f69f879b111f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:47e3c621d560d0e11753eef14dfefed4581d4bd7985589f0c5f8ae64528e141e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:5dacd9e79f14fac7a23aca4b56e8ada9d40511e660d5e9a8e2177aa5b4b94200
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:574ed6370ddc94c7df7c0d884623c8adccc57bf4b0e2f23540f7f90f23bde4d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:e89ee1b17c0f76b7f24102660b2eaab1ef788bd5de600927598f00dc9ea06913
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:048ac0cd2f5ccccadb6361786873697198b827105780d879078ac949f52b7af4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:5b80dbd7ca30189287c1f30ef1a393186a055168ddb42dc3b51ae2a3c1029bf0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:a6ed6fb362d192b74de2c2d1c7d8143cba77526be8842fd08748f2e8abe64efb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:c04f98ecf77b23e57d41a1426a873f6e34e7912c0eb10db42a80c9a034ea9dda
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:491a2847d3181f1b4ad9ed1c91bbf51faae8b9d0e339c938165ccfaf002ea53d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:5f0830da3106a6256ed56492d969043792dd1736f0a2ae947a3bc256c357a5c9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:5b14561959b9e9edd39a29e4b395ebd0f718f5572754edeecdf0e2cf350fb027