Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9-debian-dev, 2.11-cuda12.8-cudnn9-debian13-dev, 2.11-cuda12.8-cudnn9-dev, 2.11.0-cuda12.8-cudnn9-debian-dev, 2.11.0-cuda12.8-cudnn9-debian13-dev, 2.11.0-cuda12.8-cudnn9-dev

Index digest:

sha256:bcf8986e93f9698ed457ea81a60e6ecdfe2edab639dbc137ff33efc3386045ab

Manifest digest:

sha256:bb7e01159f3cf1eab4d0f52281c93bddbe384eace99ae2577af5af9f84b9c9fb

Size

5.50 GB

Last pushed

10 hours ago

Vulnerabilities

0
1
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:be67299585c9ab01f2d283f838772e838f458904ddfc63098adb6cf13f388d89
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:10148bf99252dac3c889cb9c90489a5295c38232fc515e478b8717fd91050601
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:b9298e5fbc700ae4ab502544a7ab702af75e609582a1df6c509ee75460796452
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:64ceb39847a3bde53e3dde173754835f862198143bb9b21294534a98e40e6d7b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:2708f39d61bf73dc4e12adabd9b70826ada453b1de48963251d6e05471492ba9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:cbcd0eab6796443ef0fc3234304131f3fed2338edbdc49ab210a2e0bce6785e8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:369f7a332537b88377c0f5564f6e56c49e0e278219640960d2ea84a3f7390674
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:3208f1a33222514dc2f82334a8127ef2289d51138734b5625e3411b9c087c006
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:0023144b4425d15de00d5e3e88ca02bede4a13447109675e1ca9914512d5dbdb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:90b2ea129e1bb01678b351661757efc93a5dd7f35c31c8004467ca4ab5e83c0f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:041018028a1b328339003b045ac4f29b78c565253c36949efa8b09380a863924
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:ee26e7a55373ea86e46c8ac2b133bc7ac50b64baa144e526172677e943c514ea
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:5ab81a7147102f229e16500172e6cd542a98da3ffd1381249546f8cd6dfb1c3d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:d51f334608a4d682facd28d2435bcf803020ae8ff1686a48b90eb638eff4b99d