Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JRE

CIS
linux/amd64
alpine 3.24
Tags:

11-alpine, 11-alpine3.24, 11.0-alpine, 11.0-alpine3.24, 11.0.32-alpine, 11.0.32-alpine3.24, 11.0.32.9-alpine, 11.0.32.9-alpine3.24

Index digest:

sha256:831b6f7d5203ceb0ac42f3dfc5bc062caaa81bdb118b4f2d0e68af3a40e01936

Manifest digest:

sha256:d811ceae84fec6b5e0fee27215a30e6796cc23dfd3efe242c3253b0bbb4d47ba

Size

33.86 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:827b46cbdc16593c16af5ed654163383056d23868843c5c203a24c13857bc039
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:b5f1340a5a8bcd672f0d2a2b2fb60f3b6b725b6753f8690a3c28ab89dc670f8e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:afbe96476c3d8f654f1d68bbe2645e9954ac0a632f805e9e52fa9668c9c0eda4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:d62215f5a006814a9eff089732182dc27e6b1819673018cdfae3e666bcdc7268
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:7ed868fd8393030810849c5c0479b904c1c011caaced56dee792067e6b2fa6ec
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:9844bd8ff87d7a85a96852ae708ab64164c9764e5937389587499be1bf0584ae
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:66d4557361312c8460a6e67c2c89702df9e3bd10fa918c1f68dc88f107fefcec
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:041a049387ca8d81e9805e9050b485ca8601e2f69e3076be0a84b821b9e8d702
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:23ad73ba29d283844f8d3e217cd406a2a74bc357fa46c0b49991e7343b9bac2b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:8b010db0b1cccb7b31968f94ecc4c3fdec5c31404632a53888f8a1824f7ead5d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:2e3d39aa2cd221db4a179e305da6dcd537d4f695f5209da1f6389e42cd0dfe63
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:bdd878684c26693c62a5ca38a0567bfc2290e046cd0786a65c4307a66fa56651
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:1509d92fd1ce1b152efa5179946728a2e45745a25345a59fb1eff9ed07da71d6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:fff57228b091b8b3f6bdd82c086f2cf5dd044a29aa493cdb843d68f0552e18a1