Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 14.x (dev)

CIS
linux/amd64
debian 13
Tags:

14-debian-dev, 14-debian13-dev, 14-dev, 14.24-debian-dev, 14.24-debian13-dev, 14.24-dev

Index digest:

sha256:19afc02f7023cb6a6edb82d4194a793e6796b2cae0e0459f9f490724f87cd7e5

Manifest digest:

sha256:f9cdc871d9897bc8165b506ca2cfcafda25c74ea1dff427d37cd301ba4344163

Size

129.51 MB

Last pushed

17 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:14-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:14-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:f0a4318af844af235b47f0f3962f835eae79b84ed6f5ff1f4e9e2b70f62b9766
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:600edd9dbabf3c1d6d9a1554583e4182d1c719c780ff7a6424b4a63ded2f40a6
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:c03f49ef10e62821a3120ac0b0deb460171e01fa3bb5ee11cee64b140c938e59
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:49cf4b2ba6515d5a42f83cf43c4071f18f1d718419d675883ffbb6fcadd784cc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/postgres@sha256:bdf51c277525f3e5083a708163eaeadf0e625a8ecfa1e9efa2e698de10c75048
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:8d08a4e1d2eb270a3dfbcc4186af5989c2892a203fb3c665b43bf6486abc5e64
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:983b13e094cac3fea1f8ebf2c8d5cb3cdc8001e6dab071f4551c94a3d43ae6df
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:0da37d060f59556b95e79668985c3f4120fb2df8644d16c6dea9465a6b227e99
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:ba6686a64c537fd2ebe8376b2beab50e5027d3f1fb42e7a57683f3d9711ae486
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:add0df7ef69c003e38124f9a31d7d5983770a9d44702e183fb3d2fc869e0eb73
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:a160fd4ec4f3a024630e06dfca357e821a59bf73e6ca7e6bf62c96e450abc0c7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:cf825753b1d584d7e21e49a3a7fb9c825022e6caa75a3877504fc3c7ab753113
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:1a1b47310def5041e77344c4bea821f84a90c0a0d615ee1b8fd38e2bd9513e6c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:bbc9f1e1ce1a027ef4a6ce9e89d63789302b7fb585870d619e83c7c186f27711
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:6d3c735f945280d442fcd44e827ae05e6ff011981b08f2cb8c4bc48a6057c9da