dhi.io/virt-launcher
1.8-debian-fips-dev, 1.8-debian13-fips-dev, 1.8-fips-dev, 1.8.4-debian-fips-dev, 1.8.4-debian13-fips-dev, 1.8.4-fips-dev
sha256:92e6fdce577fe3bc66a97af86a84b6186b7a065fb441ba9d35f35d8c9d637a58
Manifest digest:sha256:ec9351a4fe6736dc82c81cfe625511ad452cbb481655c435486ab70c767db74d
Size
162.13 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/virt-launcher:1.8-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/virt-launcher:1.8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/virt-launcher@sha256:ffa8b43fee4abb22f3189d2399a4d16c9c8babe09601446c886b1a5736758e5f |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/virt-launcher@sha256:3a05d108cca2193551a6334ce048f5bf9eb809603e17f3b00f8a1c036c4d198a |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/virt-launcher@sha256:d1838060aac4bf6f897d43af5e751fbba3d033e75b6bfc956276d86a3cb25341 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/virt-launcher@sha256:a0b3bf610b9662c904c7d84cd058bb72708b103d82d22a9eb9d7f96152c2e707 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/virt-launcher@sha256:7b67931be44d638e7282cc0a7586cd1670122602118807267f34cdca0e4ad202 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/virt-launcher@sha256:8866524857713a5921a64879337b92b1b118b831b488c996134a7d9e7151be39 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/virt-launcher@sha256:d9de93785c85b0d1d7f7955977ca445b06a2904223036659acbfe5fe25118c37 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/virt-launcher@sha256:4ba19b1248a80e4d5732317e05ce42a3608a33d9b0b23d1b7fc82f8a141d293d |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/virt-launcher@sha256:bfdc8cd17a845866c5d3f29a0201349b4a4c8d95e07a8697266f0c76805226a9 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/virt-launcher@sha256:1d0d17b0b003bc1e94e3319204bdb16aed2a4fdb9d74788146b2d3e982e29c2f |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/virt-launcher@sha256:8f63e63a42d0abf974d3f85f5845b88d4a092b45fd2468b7bc2de5a64ab3f9b8 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/virt-launcher@sha256:10b8257ee7437bf43ec48642c63e89f307d456d39c867ddd6fbd8cb7ad34fb5f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/virt-launcher@sha256:54892e3d544425682a152c23e676696f90a927294c1f2aff5c29e97a8da3d9c8 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/virt-launcher@sha256:de06a626f6f03ed510fedf7f44e568fa8c96d56d0431bbb40d9928742898747c |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/virt-launcher@sha256:c45dd1c98c8dfa5a7bd061e073b96ec2499959e6bdef1e08dca066340e2853f5 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/virt-launcher@sha256:ccf23a7757cda45a44d349bc6aa51bedd0db4b8b5af1d7ee92d5869aff810797 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/virt-launcher@sha256:50b3c30128d04ddbe0a55fc96a7689b88e33a93390adc48ce2d8e8ed95fec862 |