Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x (dev)

CIS
linux/amd64
debian 13
Tags:

10-debian-dev, 10-debian13-dev, 10-dev, 10.0-debian-dev, 10.0-debian13-dev, 10.0-dev, 10.0.12-debian-dev, 10.0.12-debian13-dev, 10.0.12-dev

Index digest:

sha256:830066931bc64190fddfd3d34f44c473aff182404d8b2de66b67580609af5b11

Manifest digest:

sha256:94ef43396e5454f8332e2c99feb5f8340a370fd8d71e26a93cf08742610ce109

Size

76.47 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:48a784da4d59d8e27e7050e3d9da9f6ee742c18944e5f227701383fd2d5732bc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:128be2a39c1ddfad7621957593c3a8014b144cc72a580ef024a330d455114299
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:70f8e6ea42bef920e2a496c421cd9f5293b6353af54e8a4633d4193538b35c9e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:ede6a260b3ee836127c98fdfc197a50ecddbf49fe157b25da8cffe7addc2b7e0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:f9e4f652a57b9a7ebb77148127e690d11448fad4c78a12be7b719fbf3c39687d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:286852e944917ff5bf1bbc79d2b68036cadd1f868013df6f458cd117757a7b8a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:8267b6f6d83cb3c3b85ad77042856f3269c2ddafe217438b7e19502ca273736c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:7ccd55e5a83ac42e694c38565b249e6c5cd3187b68d49f4b6c277c0ad1c25838
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:1e15a9d0ab9509b1ff7ec75728fbed8ea535ff499c074cc9713c45642edaff84
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:0b6438d22f23c5f204bccf8e27f7b0104dab3260c0cbff22e38aa274a5b2042c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:416e06830cc31fff9354be7642d4b20cce8847004a5c33cdae439d329a5d39dd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:11fe6ff89a1352e73d6a7bfb4787026e637230d5b222038d70da4f055b9bbea2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:90715592899f34f3d3c1c9e825c057a3854d6ed2046c2a4ec48cf9c8b7feef5f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:2787f833ae2850ca15726267d6beef95f46eeb2ce2b4544b2dfc251c5b56913c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:18c1c503deb871cc28f84bea7ac1e7374630643adb4598e4c70482a0d69ca1b8