Sign inSign up
Kured

dhi.io/kured

Kured 1.23.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.23-debian-dev, 1.23-debian13-dev, 1.23-dev, 1.23.0-debian-dev, 1.23.0-debian13-dev, 1.23.0-dev

Index digest:

sha256:ab311a86d432cfd4dff32da402ce8e4a542a0a1dc2dc7c1ac7c70fd288e18122

Manifest digest:

sha256:db2bcc1875d15b95a57a6fa35512cddeaa427765efd46f1f85fbf546c2122d43

Size

34.44 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kured:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kured:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kured@sha256:07f092a1ef99d906c384269ca16a8552dfca2de52a35817b8cc2fcc4e61eba75
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kured@sha256:11d539ba1581831bee11d925d52a782d47f735fa21e318db3c2fb11dfe040837
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kured@sha256:a0b63ae0f24ec3f00133437682fdb87c03777cc77df830b0fc78a3ee12414c68
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kured@sha256:df8e3ce640ebdc7d026c87514331afaf52b80627081beae06497ee38d8f9133d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kured@sha256:7cd89384131a2ac64bc7e6055e8ecede01b1be73ca46eb32ec16abd03dc3c00d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kured@sha256:d6ea8164da4827657376a9bfdfe6188d33556637e18deb0bcf34055d4967f789
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kured@sha256:fa1bf248b306fc65c90a6cc767875bd3a97e4294b7b2e328d42268cf219f6231
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kured@sha256:f614e9d72022d86b913221fa3663d7410184abd6f2f8c28e0244c0127bcfb508
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kured@sha256:0a6115a0ea973a89ef5d55bc37ddaf7ddc874ec6dcfbc3a09034e3294fa1da2e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kured@sha256:88ca009033640c59ca5443dc53a6a24fbb990b0dadf3ac2b807ed22a71251df8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kured@sha256:df9c5a78a8c2c1c6f3f1f6856f94fe852ccd929de60cf6f0a9cd817cdd294fa9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kured@sha256:03952ca4a0500905655d2deaea77c78035cc438ef82261d05e62d8497c36e1f0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kured@sha256:fe74ae3103cdef961ce9b97a130d7f1074baacfac4ca1bfefddabd8333062697
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kured@sha256:7328bbd7b8bedf944162487f6c5d246ba8186be1e1516d0e18f72d4874589f15
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kured@sha256:80569751eaa525cc990f6ea245a5a9c1f27df914d0717faac5d9227362504c9d