Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9, 2.11-cuda12.8-cudnn9-debian, 2.11-cuda12.8-cudnn9-debian13, 2.11.0-cuda12.8-cudnn9, 2.11.0-cuda12.8-cudnn9-debian, 2.11.0-cuda12.8-cudnn9-debian13

Index digest:

sha256:5b0746d4f4f3309271f144d4d88ea40aa6492433c14961f6cf048571eb958174

Manifest digest:

sha256:c26bcc03463a9c107cb1146b5dbdf1cf5b92501ba7cc5061adce8a0af09ade21

Size

2.68 GB

Last pushed

10 hours ago

Vulnerabilities

0
0
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:a6dfcb472055f70a484dde5a1b124b8b76316d6ac694bc981562c851c0598cac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:24cbeaa3ae9063f876574aca2c74ccdc86cff1d63cc27915020e60880d71975c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:be23d5443bbdb9fc06f5f4bf2a84d855c435c55e02354057720831140628b806
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:75798cda9a67f39a2078cdcee2317e55724608a3ef6c40e5dd582d39c25a02be
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:32535f07265a76c9f6f6095e51444e5a3bbd4d9069923cffca14e0a56eb13cd8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:023833cfc0e0a01484bac311738838e4f03ab8f93897e0f56df3339e697ee291
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:ca47858af30aa9fb43da4e86e8af5ba260e0585b9528bf5e67bbb580d8be9d38
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:f8de6bf79e1d847989d4bb52316a983dcc838c12cb9ac3e2bfd40a6c4d61339d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:cebc85fdcae2b7ec5a6ad9f10c5bcac3caaa5a9ffb3906205f6509f98fb88946
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:61e55bf5460770d33f55ef60ae900817884091a83a54325dcf14f708665d0ba8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:4918548e14564bbda53c55639dc21980dbe9f5f9ebe502ed688515595bee657e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:e18558f668609c3eead70c3aa282f37fbebaaa43c8a50e5907ba8159442a0354
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:7dd89d789ff8822edbf47ec85560a67c6cca951557afadd8156d5f04a9f9c35d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:b87da4a046b12bbe41ab58c40c8609ad27800501f4b2a2a3092843f9734d46d1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:febf7cec9102b7296b2a76a2a6c0a6256b526e215ff10c19255cb42b0190778e