Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.24
Tags:

11-jdk-alpine-dev, 11-jdk-alpine3.24-dev, 11.0-jdk-alpine-dev, 11.0-jdk-alpine3.24-dev, 11.0.32-jdk-alpine-dev, 11.0.32-jdk-alpine3.24-dev, 11.0.32.9-jdk-alpine-dev, 11.0.32.9-jdk-alpine3.24-dev

Index digest:

sha256:f0b3f2da00ad7d746aa83d90451585a2a2c49ee149a47a0614f9b08912ebe56e

Manifest digest:

sha256:0b92ba8e41b8b311159824d24d54d38c8a0bd08fdefd263f264a921de043d752

Size

174.29 MB

Last pushed

14 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:9db93d607d3132c98d461accbd78d52a1ef1b474b384ed1e38350ebbcb553cff
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:fa5b3f9b5952e12c67671d0528667a5cf3c2d8dbd943641e86b409b384d9d198
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:d60f6adecc10be5f5effd0a554452c69c2a92a8c8052090768b88549fc56139e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:56d1c7446881d8699bdd6bf7cebefe4f2c0b90d38b31e94d5d549c657a7663dc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:41d1941b368fad100f729664c0ccbb386af8c9b8075c9b7fcf47010f9435d77d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:a47ba271217a5b19751ba7eb881442f0668ef9c5f562894c1d16babd7780e3cd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:16a3a6f98ba3125f2edad44ae80bd3e8e68cb38fe46b3460c7efea03297822a4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:feeec464992094221903c678990a01fcebb100722852bd8890e14259d6c1735e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:d048bdba94ee30a41af494e4dabf80690454e211ed43a5d47c7b44f89e5ac03f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:42b51147a458fa76af991a729792243cdad341d68301fecd299038d897c96a9c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:f7e915327bdf97802422e7d71307f25a0b1e48006a0f5c11ed8c1f11482ef946
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:1b710f137108ea38853ccfa45bb08f0f6b4cd5c87fc158c412b269f84875b04e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:06bf642eb0b515797d37e956d454ee24f3cbf19c6e7a8336894a12b0e633a129
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:c2ec36e36688d4046ed866a702568fd0b05005507adf2871b79e949d4eea5f0b