Sign inSign up
Erlang/OTP

dhi.io/erlang-otp

Erlang/OTP 27.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

27-alpine-dev, 27-alpine3.24-dev, 27.3-alpine-dev, 27.3-alpine3.24-dev

Index digest:

sha256:283b6e5fbf61777f3b1859a17259eea4b19314b3bd9633dac5ffbc4f43d7877f

Manifest digest:

sha256:bc5f909d5fae4b1b51e14b783c51cc09dfc0bc59c92e1ddce34d9862ee27402b

Size

38.06 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/erlang-otp:27-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/erlang-otp:27-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/erlang-otp@sha256:7991a128341a6b14024bb1ffed1aa2677d131a77ea93c05a62ac24fc6c03c149
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/erlang-otp@sha256:f75e79adcad04694c115fd02f128ef58db0cedaca0b8d97e1e6a76cb823ad0e1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/erlang-otp@sha256:674fa2be4a9e5f1e6a59a9f846bcaf6d5647d7819d37561784b40278e985a68e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/erlang-otp@sha256:039f027dd10e18602891cf84dfaf5f736fb368ed6c91075494b9b470860fdaeb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/erlang-otp@sha256:e2de09c08857118312a6ae55969c31e705c706a2bbbc522d34e9d27930542be1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/erlang-otp@sha256:e7dc3a7fd79b90d894e6e95d870deb3bb1b310d40d6ead7528ec5a864620874e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/erlang-otp@sha256:7aebda7950087db437a2088542311e1b0e5904f8317eb7f59da997d20998350d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/erlang-otp@sha256:41bdc0e6b5c2af62b2504bc0dec217a923817fdef7606e997e05de1a71312206
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/erlang-otp@sha256:2a742650b4906512eeedfcf3b8d9f1c6f0504533e3305ba6e3116ed9750fc5b4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/erlang-otp@sha256:afb9490fb7b1fc643a0de17b025d2a732fe9ed67996760f6be84da9cc5b53863
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/erlang-otp@sha256:57c5574b8e87c2b9ebfd9f290437e85fe7f27ae6eae2fc2cdb1624e0264a1c42
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/erlang-otp@sha256:6a58ea279a6e1f075716e0f5fb82dcff43c5f5bf7b6c5afac35103df4aa6c0ff
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/erlang-otp@sha256:1d2bc0d6d88c663d55f20cf85ccccf57ad68110a3b1253bc8055444fb39d0c45
SPDX SBOMhttps://spdx.dev/Documentdhi.io/erlang-otp@sha256:bfad72b0fdc572732ec8348fca745691882c3af6bc074490c10287105f4ea2ff