dhi.io/virt-launcher
1.6-debian-fips-dev, 1.6-debian13-fips-dev, 1.6-fips-dev, 1.6.6-debian-fips-dev, 1.6.6-debian13-fips-dev, 1.6.6-fips-dev
sha256:0349b048d2d65f255a329d16978a8639e01dc96148b9d3ae9de6acc2b0a48bef
Manifest digest:sha256:94fe5ab547257932d9f9f99406c2d8e299d3d5647856ba8ab8750a77a1fceeae
Size
157.13 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-launcher:1.6-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-launcher:1.6-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-launcher@sha256:c7b933e9ae1bd7bd70af9b18961caf60688ff4d6b6702ceba3b145c35f55b771 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-launcher@sha256:8d938f2eca1c23585368a718676462b453476adfaeffd8796530a8065892b1f4 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-launcher@sha256:f8c8d9e66373376f9b86b23ae9e274eeb316e5ec6c3f1d428a19632eb0d7ec38 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-launcher@sha256:92dcc76c56b8079d834568d08324566f69cfa3aa95c7489f2372a61f4679e7d3 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-launcher@sha256:d6268b2ad954da6a1ea470bafa023ab67bbb98568f2806579d5560294611acf3 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-launcher@sha256:91c3fe81bf66ba4d25b27e274b9b471f81100425f79a2ab9674b5875a90ae16f |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-launcher@sha256:8a168eec2e1840653172e239b0225e07340b175a8342f59a8541c264b8258f92 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-launcher@sha256:f8fd1e0455bc796685da13f2cded4aa6cf8a544a8ba84903f13a9173ffaf8efd |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-launcher@sha256:ca769de66e67187adb25298e2bbcf37ae1086ac7e6fa04369697e9ef83bae27f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-launcher@sha256:2458fca71b500640cc468bdf99295d656dfad83949f3be8d6908fb0c573f4fa0 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-launcher@sha256:b3f1262833bb569bc9114f3a4e1c6db665d76e374a71673d847bc98b0799a531 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-launcher@sha256:3c0e757255aef21ff81b16e6dd37a81088b303564bd8d2e4c446dcd99f819aa8 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-launcher@sha256:be3058d0ad17a03e7de27eb20de66ba0ad0ae703df7afe6d2dbec8dac6080d2f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-launcher@sha256:4905aed2cf687d4b35ad00db708507fcfd396f4b1025fe021a6f224f83e933e3 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-launcher@sha256:327154202afa1fd7d83ee864d188b7325333d8df569f260e59fc6e966ef46106 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-launcher@sha256:5c34787a72638f697b475460dcca16cd5630e0df95e4abb822db84d3ff8855cd |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-launcher@sha256:5e7faac39b9119b953d195ddf216d4473fe104371d9a537570332d76290b92f9 |