Sign inSign up
RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.3, 4.3-debian, 4.3-debian13, 4.3.6, 4.3.6-debian, 4.3.6-debian13

Index digest:

sha256:b2386d321c528ba3829e89e7002db72200036fd880bd557af962c1af76401712

Manifest digest:

sha256:3f72e90e539e0adf625e02e3458a650372b90606e6e72c13530a77019bc4e770

Size

87.75 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
9
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:6a274913bdfbc9b4ad027c06cea0fe6907cc6ed412a100954f039720418d672e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:e45947615573d54c646d1c5a06b59b96236e426f45e487066d0f64e312e5b730
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:d020a408ccb6f7a40eb3bcdf62c4911d8f69ad8dd14a7314336668fe355a5381
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:448f1f56ac65f75d2e8e9ff50dd62df1f1ec2bf22562712e098567e90c526cd7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:092ce6826cae74c20f8f6b14e1cd23083f200b293c33c0b2fa6801c01626b23c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:a7c451163bcb8d4a8ff5f58882955b5fe12ebafdaf1da54c9d5bf4b662f410b6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:2609a3c62ab44d24aeca61034fc9b3fd8f367fd433ed3e722db09b40d28007ea
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:761b6adff4acf99d388d2c69e26987b7952fefd33e66ce081452fd54798057bf
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:474aa0f6e79bb0245716b4b0473b36165be7149eee1831f6d4676cb938731a5f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:3ba9cf56d84914fddb4cfd75431c85cb8977c1669935cc00151650738c3ed58c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:0a9c0f6989765e52aeed81d0f8a677af6ad1c03fa6cf2183803745544816ee96
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:65bd852ed76a1ede86e40c37929fcce78dbcacab77492fe69120028af2d629bb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:280ad59358a25a25c115311c943d8b96d4ba69690723653bd205cb04d5595159
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:72def60189fc59d3024cadaaea72cfb364e60f17dfd85b3624114a4cc4fa5de4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:ed6923826989d274f865767000abe73e33c0e83a666a83bb56a8756fc4a29552