Sign inSign up
Azul Platform Prime

dhi.io/azul

Azul Platform Prime 17.x

CIS
linux/amd64
debian 13
Tags:

17-jdk-zulu, 17-jdk-zulu-debian, 17-jdk-zulu-debian13

Index digest:

sha256:6b6d613ef73618175b0cd1261759b60d0151fd17a283790c2671b16a6f02f03a

Manifest digest:

sha256:731b77ed2e19c0fece4cc4877ea92944c437a6e2d50863f83cb4da4bb5cbdd0f

Size

128.50 MB

Last pushed

3 days ago

Vulnerabilities

0
1
0
7
0

Support

Active until Sep 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/azul:17-jdk-zulu

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/azul:17-jdk-zulu --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/azul@sha256:6c8916570a1400912d698a60a7a543c562f80e46402c476bb75303cf09aa3f67
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/azul@sha256:d02e45c1daaa2d584fc01a64d178dcbfd2d88ddb539ed9ee1a0db7709d339c5d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/azul@sha256:31b09b82c7776faac5451aaafff74594af415e5cb23980e91af6f707653ae4b3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/azul@sha256:e37a4a34e8dab292b49e99205ca0e1c35b69fa885d1e80d2fe4b260b1d1dca60
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/azul@sha256:a07b7221bcf1fbaf6a433570c2dfffce331b3b94ea5a958265c4556a9490577b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/azul@sha256:8ab85bc841995de9f40f54e4cd8c4162a6325c9d22b37ba4dc994243650031b9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/azul@sha256:f0e56a9af29428b7baec6150314bb836c038a94cd5f166ad915395414dcc3ab3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/azul@sha256:56cbf5e9af234e645bf31d2ec2cf9d14e126c4e5d0a31ef99f1415c456ab7c5f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/azul@sha256:714b7a2496844ae15985b384e6abf38bb0dcc1bbcfcf6796289649685dc3a318
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/azul@sha256:3d1967b9461886e5485db86e2479fde5092d214bc7cba235a30f02db4f23471d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/azul@sha256:7341e6eaefd25f8a1f116c6f68fe8bc5fe88c1aced3bb7353852b30e4202bd77
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/azul@sha256:a335217216dd86a8587cecb569ce601c6065181ee7672546e1393d78286e08ca
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/azul@sha256:bc2ec5dac1fd62ba357941963203c530538b8e9c214e4e4659d95dcebec0ddbf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/azul@sha256:e3ce624462b70c6130c9a4ad00198419f8cdc65c1ea7c7a2e0f8b74a06ced968
SPDX SBOMhttps://spdx.dev/Documentdhi.io/azul@sha256:4ce1b4730f34d4041a9ebdff5cef47eb64066863cedae467b39061e2861f70a8