Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.23
Tags:

11-jdk-alpine3.23-dev, 11.0-jdk-alpine3.23-dev, 11.0.32-jdk-alpine3.23-dev, 11.0.32.9-jdk-alpine3.23-dev

Index digest:

sha256:d1c0d9d542494b9070243114650717873aabb02bcc0cdadf90b532f2cb90f8e2

Manifest digest:

sha256:d08c30ff2f347a5a48ccea07894a2949fe8a74726b5737c40c00453e59b09feb

Size

174.26 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:24b6455ae4a229867a1bb804e0174ff706640d59861f11893fd587eae7ab0e02
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:1f6c4cb2b972746c339bf182a43ab1e73ff2086304b1c613bf7eed874c878e17
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:722c0a03df1dfa54acbef36d50ede5b09d1d7f60e13f53f6544159c295cb5f06
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:e39210ed65c2840ad4d473afec6bfda6e980c56aad17d869ada631bda4d6e4cf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:61cc0863887cee6a74164256d6d037f872eae65b39f8e84c914a4d46000f51d1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:e1930516dc502fdfa3c7e9f86dfd6d61e817c6e9f437285a90739d6782eb16eb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:5eef69286d0a4549e699380452b3c3149dbffa6a0550860ff420f3e02d4e49f1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:988fbb4d33f5d313023abe3069ca99fd8e361595a1c8fd155f96373a2279cba1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:389975212cfa6ea61d7a7751c8dfd065d44d137bfa0aec124da36b14483e418f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:d45e9c9558f7e9d6f9b4255dd127fb2290b4ff161aec67c9691b1357e563269f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:352759f8e9e77089fe29670d40d1f0fda5ad8e764c9a5d68e59df6b9dc848bd8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:f9654d2c5f082226cb9cba71b9a842ceb9671dd447a9a548b1a37a35cae5243e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:8dbe9bdc20f66f29ed42f6bbb080c6b32af1795ec2d7dbd827a8f99d85fbb458
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:dbbdb0dbd117ef2abe1c15e4b75e0a83a45b1a181611e68539788521ec53948d