Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JRE (dev)

CIS
linux/amd64
alpine 3.24
Tags:

11-alpine-dev, 11-alpine3.24-dev, 11.0-alpine-dev, 11.0-alpine3.24-dev, 11.0.32-alpine-dev, 11.0.32-alpine3.24-dev, 11.0.32.9-alpine-dev, 11.0.32.9-alpine3.24-dev

Index digest:

sha256:5afe3798f2d73aa3e47f7fcce6598439efa37956d1daf7620d6d318c10f1e468

Manifest digest:

sha256:be690a40d06c525cbe9ff18381b168b8c10b0e6d88610c6030dac427f61ae2b7

Size

36.85 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:18ebbfb0538e82695d6f35c9f4d10cd1e4209bdf8994628f6810a4fb29a36ab3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:806c22dd389db6aff91bac41c33f3e0d75e512848917dc084e4f1b8d4d07000d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:a62148c70e3ecbf0283520de17ed325b16ee9cc9524df39a3d9ed68753e58168
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:be30f1cdfb45dc6c88c48e70e7ae2867d440886be760baec9c7601fd97130ce0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:ff6a8d047b61060e2f1e6c2765d94ad0d8f680e487e296a690bdcac4105be5f4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:29272d61e5807355d9bb3d5262ea7351ca8fa2ac37d71694bf173f5b7dcdb1c1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:24ccaf6424299a5ffb94698e4d4883d5126f49f9e01a36c7c958a1a8073515c2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:583c934a9455861c403f00c2756c63eb0df5d57f4aba420483d1246ab9ff5af4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:70247a2a66baa9a1cded9c813a93d51ef6b06a1bbcfb0ccd4742280327db3a6d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:d858500430b62912104d32c513fb1854aeb1fed5253b92545a18cec3c75f7fcb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:b8fbf0c8280fe306f67ac3b09d57194f3d6295e54d1aba3607174c43723f603c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:ab344c06966fc23a0ca9a54544321ee26840f8ffae605ccc2461864d86f6b772
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:09270901aa3c05a9dad7f684c29c662f255d3b7b7984e7cdf21059f8e9a1a6e8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:043fa9927067ab6983005275188b424731cb7ee6966aba31c94007cf11f1b541