Sign inSign up
Trino

dhi.io/trino

Trino 483 (compat)

CIS
linux/amd64
debian 13
Tags:

483-compat, 483-debian-compat, 483-debian13-compat

Index digest:

sha256:e36a95f4330c4069280fc67f2b0ae9dc6c2fe2ad0c8235be9b65fccbc0724c85

Manifest digest:

sha256:750780a5fa085f8854ca2141f274cc9aa7754df0ac466c7b7cca69c6eaff303f

Size

796.43 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/trino:483-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/trino:483-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/trino@sha256:5fd759e304c99bfee2f2f7736016dde21eea6de4cd84fd6538aa9de6b4dff9da
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/trino@sha256:95dd4de8634b23e6f2103896e4f3269136bbdce5afbfcded1f0884a8e0082383
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/trino@sha256:c3f84375b4a9a9f1def1ec521cdba61c72fdbc97aeed803ad10fc64e580964a1
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/trino@sha256:26bd45bbfdde2846f3acc284567bdb4de8f90e53b03f881c2e9c4a652e4f65a4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/trino@sha256:5d74dc2153c8988c920334559377389210cb07dc10f39db1c208765b7ed2d0e6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/trino@sha256:0d7bee9e14061b97c777bb8eaa0be8b3a8bc8e4e7bb1780f4282457916cf3414
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/trino@sha256:4d9e72645498337df5a861b68673ff11b90bbf23943bf774fa6f89e759467b4d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/trino@sha256:089e701a65649fe83f6056b363480777949f9ff399d3447bd3f2d72aecfb8bba
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/trino@sha256:520e7640ca9f671b76f466c21dace871b5dbcd83a379ba70e9897e08095be97a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/trino@sha256:bb432619e6377bbd5b53d9cd84069d2af9f299c90fcab6b2ecaa2ef5e577899c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/trino@sha256:3b444f60b7383564f822bda2ddd62948627444985ce19938f2aa91eae9252acf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/trino@sha256:7499e76b670b958ffe537a6838d5827146a6f6995d316b07f66ebc8a20bd5745
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/trino@sha256:664d7d779b1bf9bb09135f14bfb2aa32c177b1465a6152807f90f5e9fd85544c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/trino@sha256:fac710418a1c93a06521a2bfc8666d23dec4f37795c8a53ec84138c2a5840120
SPDX SBOMhttps://spdx.dev/Documentdhi.io/trino@sha256:8a1457a08aac35ff228018f542658eea792af19f71f82be8245f865292b30951