Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

11-jdk-debian-dev, 11-jdk-debian13-dev, 11-jdk-dev, 11.0-jdk-debian-dev, 11.0-jdk-debian13-dev, 11.0-jdk-dev, 11.0.32.1-jdk-debian-dev, 11.0.32.1-jdk-debian13-dev, 11.0.32.1-jdk-dev

Index digest:

sha256:fd6a23b53775f06e5399190fea606eb9d85922bcfcf99184c4cd4562889a9390

Manifest digest:

sha256:1ddfc27382fb04ef6a8f81731677fb9456dd7ea7d2bfa5c48a14c163a60ccc8d

Size

148.18 MB

Last pushed

1 hour ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:5b0642924259c014cf2c4f6e7b966384906059a86baeb715e226998a53584185
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:5ca0b1126c95f7eb113e1e796ad8c8821193058a73bca40ff86ef44b0d472628
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:f56c4c3f0c72fa263385a1e988d64c7ce1e8be32543d953d5a7bbf2f730be8e9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:c24ffa04f4ddc2f414300201bb2172052abe121c18090cfe41b49380dc96b912
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eclipse-temurin@sha256:57cb3f4a410bed3282068e2a14dcbc1af1152e09816b01e2ff32e296633bc8bd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:da123ce643d275ae45930e7d7c7d266c37b22028fbcdd7a4fd103cc37e440530
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:0e69074084add8440b2989ccaad382b1434efa1fc75ac31603fa755da755d85e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:d7f579ad691401a116edfbf3a0f18d411852c0dd85293a7e97487c0d9ad24067
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:b3939c379aca73771c5d9d16d0dba0273d1e3fee4314c6f52bb84b013e911899
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:e6bcd161403b8bf33640983fa2cd4adb542e4cb7db82cfc02b1ad1090f72a0bf
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:3dc437b9e890cde4a2e07c4c4dec51a21c22ea91ed515bfbbd30118d14823175
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:ea38dd3aeff3bca7173e2d3fe2aad8246bbbf4d7fe65254757a5f1a7a3fe4be7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:03e2d7517dcc889c0112ac3dc58e2b8825e40ba3204b9041202bb7071163e17b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:1417b059813295c4b09dab296d4a3ce3a3ba781a5ec8d3355a7f6493e25d61f2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:5fce732adc28ea6da8d10757462d5ddb9e579110ffdac3ff650daac286de276a