Sign inSign up
Stunnel

dhi.io/stunnel

stunnel 5.x (dev)

CIS
linux/amd64
debian 13
Tags:

5-debian-dev, 5-debian13-dev, 5-dev, 5.82-debian-dev, 5.82-debian13-dev, 5.82-dev

Index digest:

sha256:6e7ee8a29953e0ce7342ee7d53e72a296f2fc611c03f611c5531948c3305df25

Manifest digest:

sha256:3b994cb7734208b5bf4eaba0160bc618c0584980494864ca005d95f88c10bcbf

Size

23.50 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
1
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/stunnel:5-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/stunnel:5-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/stunnel@sha256:c838f0ccb26c3b72f1eacc78d53b1a8eec9b4b952a41f5e54a9e4e743674640f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/stunnel@sha256:2d30693c45a3bcb89a75fe73aaff66ab27dfab0c274f373eda18276d7afdd72d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/stunnel@sha256:d11b8d821c327b35a511bf746f168789fb7521379bc9950ae9571e3aed3d2b1e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/stunnel@sha256:b58dfe913ec5343b6947b0f4c299a62fbdd5e7c4a1a90610432db3b136eb7659
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/stunnel@sha256:960c4a958687fab1eecbda0144b4de91e629bef75eb40125917b693e5f156163
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/stunnel@sha256:e09cebe2b3ec37853e5556308453fce6eef57d86a33b9b635c08b8d4264d78cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/stunnel@sha256:50bf8e8c3a02e872d216cdab61536ecb11d3e6c825fbc7cbe8df0721af6288ff
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/stunnel@sha256:9763e51e696039c1334fc6ef0f31ce19b9747e0ca924c3bfb56c101ea35d15e7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/stunnel@sha256:c2ff620974fb80b559e53ff49668c35dd14a8cd1d5715b04a7195ec32f864c36
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/stunnel@sha256:c8c82b059fe131d7abaa37a3fe2269d8a5dade409f14f67e2c98590b9948b1cc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/stunnel@sha256:8313324e7717b51ed60a9055801c1e3e8d12dc3f571d4ba319a2f4d778ea2d0a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/stunnel@sha256:5d6820d7e6712aae64a9cf44bdad40e2f1496c48396f62b02ff825ae05a9786b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/stunnel@sha256:1084c60762ddb74a9572b7160d4b6b2a2b505952bbce3afc93bd16448dd7ca4c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/stunnel@sha256:6ae116bee8f018710619171ddbad72ca77f0d9c74ee5332b75762e2161a5f19c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/stunnel@sha256:543b3fe79ea15eb42abf3e1f51961b8d6390a7bc9f027426f802e24e05b2acf1