Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips-dev, 11-debian13-fips-dev, 11-fips-dev, 11.8-debian-fips-dev, 11.8-debian13-fips-dev, 11.8-fips-dev, 11.8.9-debian-fips-dev, 11.8.9-debian13-fips-dev, 11.8.9-fips-dev

Index digest:

sha256:7ac5706c36acc1d64ada9d8e0d4c1a86598591454148a027d98c731fecb87c3d

Manifest digest:

sha256:cb45b12ce8efacf3a0410f061e63003669ba15c99a64f982cfe1131d4b48b7d1

Size

524.10 MB

Last pushed

3 days ago

Vulnerabilities

0
1
0
13
1

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:c662e1eb39faf7fffc83d9b244fe143a29621346aade928840a07bbb68acd0d9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:4100a714a9fa7eb272678d750b5233c8066dacf778365f4c3fdf8080c93bdf6c
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:67b9009ab7151a7ec953132f76e3577482c299a4205f23421724c7483da1d76b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:e8e6a214ad76e996e83d080bfaae3bce0e09c7c6b74c9e814c22ca3159f15248
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:50cb1c881d5c2a1f7e28bc24a07d28bb38d19eeb0da1d20cb07f0525a33e3f28
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:b68d920ed1544a2a4e3c2c3164020ecbf247bb3a463247954f4f181d0ba1c708
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:3ddaa7bb8a76472248b67622dca10d9796501f41b45083b45a15eedf58864c90
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:e8c4c56c02554acb1743910698393250e964bf86b797b1d07e79ee83ff2a78dd
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:bb38b3cc02c01ee73655468b3b90d4d537449952097051545f433caf45ee9981
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:f07169c564f8b4076d5a124b968f78d5a2754adf5f2d90e3a6378c99dda342e4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:0234b094f99eb00c1dd64884116b051062e2730ed9e68ccd9515cdfe267cab02
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:6343dd5d086b60c30ef0d72546b727ff372f53212994f6eca72e5852eb06b412
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:c0a9bf5ad2520fa4d7e54da314e169c8f9f8f6f7fa0e19591b564d5841356256
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:cd0ee832d5c3a3af534ef0364aab0344ab0cafacf487c8237022c3b59f4c6e15
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:1ba6dda067413d1236947f92ec80ab61259558957d692b12aab8a0091107b38f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:79309e61a078d711688c30dd8dc6216a2052bd48907cbeb745ccf000779ff764
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:efb38282ec6c8904bd194c2c55dccc2ed30506d03560dbf25873c8616ece6feb