Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:a38196255d0fc56379e700ffe6216ec6fb8683fca04e281292882a5648130506

Manifest digest:

sha256:2869e625ef0cffe866d6642a8b680c509ad0342ca149ec14176ee4df92b46ca9

Size

122.26 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:204d6a1cda15b232ca28b6d363c36f64e1f5a287f1677cdc00b5c8a13bbcff6a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:486071be25b46420aa47af52a181854244cb8f794c0051ce52c4c42223148099
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:368775fee170c99c555d6d2bd2d073870c58d2c640dcd110c3ceacf95bcda0da
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:4edc8379382a32ae52d1f275e0fb016bc2c062e87741202b70a667e3ce8f9ada
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:a401c5cd512478889a7a5b1d0be7802d67aaa1cd78d150d84c76ac2594962012
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:162a235175033246ce38d1b6b3426a290e7afa0e55722da735f01c182b21ad38
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:ba7a310b7f62c84981b1032f951a0c5c9d2942e9b5bb64dd93cd21dd74f4325d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:a37604cec45c1b5504438b26f34426b2dd75ce4988fee8592a66f0e78355829b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:10552b3324e987ed70b4da6f8816ef366c7418166bac33eb3099102d794eae70
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:9bdace82ed7fed6716b11d79aebb85232694555fc8427005c9c40de022d7c23b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:be31f355d2b0157e5006a0cc8a83b38bdb049f3d4599362734fa03a024e6a704
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:872f9ba1405db1c48f091f192809096ed3eb39a8252f0f74b477957b5ca21f11
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:8b3e924c4abc4138aefa94b5afd95fa29da4a7001ccb9580fc87d19de437577b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:9db900d60211772c22691f18458fb620b9636f06ce9609f20d54b73fede3cc25
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:3bf252c1defd466aa98d3d83295f92ce78e63e0746eb6d8a4315a296a5aec0ce
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:01f88036a6edf4f9cbb0815974323230ef7532f2db79733215c2a57e716c753c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:4d3b48b0dc50f46ed3c6ffb675eea98d1fa14d2034d6d26e0db6abeaaae52e58