Sign inSign up
MongoDB

dhi.io/mongodb

MongoDB 8.0.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8.0-debian-fips-dev, 8.0-debian13-fips-dev, 8.0-fips-dev, 8.0.32-debian-fips-dev, 8.0.32-debian13-fips-dev, 8.0.32-fips-dev

Index digest:

sha256:12df7bcbfa7efc7c85a2287384fb909d6c1d1a9557b0205b3a5096216fa31eb6

Manifest digest:

sha256:2fe50b14b787955600a2143cfa398d2c550bf3a418b3bc29fb1b4d5ad4646388

Size

191.87 MB

Last pushed

3 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active until Oct 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mongodb:8.0-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mongodb:8.0-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mongodb@sha256:d9e2d69bebc72758104550b91afbd0048948de4e475898d942654c4c712571b1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mongodb@sha256:0a5e1ba25e4f3bde9ea23864a831137c3882746a9006b117426052b619ca36de
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mongodb@sha256:d318e8fbc1aad4ef593c86d71704312c35be30892ffedcf4511786ccf3a4a08e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mongodb@sha256:c8b6cb920e504a58652c8d0c1c2eb309e57d351c48c4ce0bb54cb82447c15949
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mongodb@sha256:b627a4e56adcd0e7662ad8f27773c41b87a6a5977ee130dc857293a9b2004e1f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mongodb@sha256:97bd0ba6c54ab0dd4015b20b85947b153338c77dc2b3bbdd23f7b81d28496a92
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mongodb@sha256:b0de104efdde9dacc04566ffbaa28124ddbeda37ac2c6ce973b5b2c8f83e7453
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mongodb@sha256:90228e350dbb2edae25ca1ed951bc7c2622da4d9486be6098744c1dfefe5c7af
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mongodb@sha256:31867b8f1ce3d385911122bdfa2724986a0c11036d66964176f55efb9850c6f7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mongodb@sha256:73d947c8ecbce3e075648263e73f199725df9dfa8ec248c09b92514721ff09ae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mongodb@sha256:d8376a7db37eeb773263c8bb092cd42aef50252eb2dcf2beb287de1b1ef10509
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mongodb@sha256:cd38e91b465270219e34a1f0fd51432a5c6dd3a931e5c79f29e75cb6e7bad2a5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mongodb@sha256:d3eec3f301b6efffbfc77c3357f76b88308adb9a35945b0df65be735e9e64598
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mongodb@sha256:642d63bbe3f806f9def02b87d704997216aa0d1745738aa3828c237f95ac4f55
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mongodb@sha256:7878d62b1f980dd2cc1f8e7ee4cf2697b68e1db1e91b2ed8c0819ffdce8b6add
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mongodb@sha256:3886490b9412f77681fb6bee9d37258aab3377ed651b5f07e2dde3d1b58a791b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mongodb@sha256:cfa32e357c94867a93ef1b9f45d2e0c05b38b88384d5be4f8cc32192197921c6