Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9, 2.13-cuda12.6-cudnn9-debian, 2.13-cuda12.6-cudnn9-debian13, 2.13.0-cuda12.6-cudnn9, 2.13.0-cuda12.6-cudnn9-debian, 2.13.0-cuda12.6-cudnn9-debian13

Index digest:

sha256:39ae4d71bf6e6e1dfe02f3ae5af93b95c5c543fbaaebc452515e9e3b19d8f719

Manifest digest:

sha256:2827629a8d188e6264f6a2ca8a3edee89d426a9011bf1d7ca2e7a7a6b5c8dbdd

Size

2.39 GB

Last pushed

4 hours ago

Vulnerabilities

0
0
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:a0cd229601b9b0620535b052380fc175f3cfd2f1349b1031e8dbd8c58d28d093
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:7a769d474696da22c4a4ee8deb27e79723a18a2b76fdab16be0699f78b9fb0b7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:c48a81ea46eed7136062eda0fb570207bf3b8f3703289fd1650c364e2d5ebf0d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:dea254baabe6b955f748eb23ee09ed149d7b02ba1a7a2533142d3a94ee1e0e25
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:1b0cc41333a33d90eb30505cd81ce468627ce2d4073f0d39daa87b8603aab84e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:55d7aeb3d5acb8f8a8bbb788beccb52cdc17d2eb89b42dcd0e05e83c7916e7fd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:9b82ca8d2f54981176619185778f49e04bb49167c6ea83459c34cdb2555a4215
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:0ff3101f1716f502914add0a5034e84ca8362eddbed7610e5907755dfd6b01c0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:67f392399671af52152962592308cc668765697d78307a53846584650bc2df9d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:4e117c9a6c51a35fce5a2f571d7c88e992913439ac87e421323a7ef01a9d3e80
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:3fa1800a592c1d7021fd2e89ad795ceefcbc789f7dedabef499bf0f130e3f637
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:c990f9b9466b1cee225c766c0c8322d998f0ced62eb6f01e2285b455a6adbb10
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:3c7e99a1bd393bf4d057208aea78164f003760cae836dc93d7fc931b35bff67c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:ff97950796a2ef50fd071491b4a42ec4362a1efa0d436b65446ce8219ea7df6c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:7bd7adc3ef258698e3e1bbf5d0a8f7ac0b19479f7a1e262525075d2a54499be3