Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:9a9ab4b8876066ad4a6bd2789f2053b1891f4e4efe1c79ea5f612531315b3b48

Manifest digest:

sha256:f6e09d270b049ad952127fc658e63ab7d79f2156f7b566c74be11380a08d2904

Size

3.59 GB

Last pushed

10 hours ago

Vulnerabilities

0
1
4
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:48780915d894778e746ea91906dff64db201c91fad9de31abb9a7130ecc438a5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:71d6f4f60263d2b573aa933d2854b8a68a3a317b644dfbca01397ca0d961e245
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:ec1d428297d1692b1a476caf37624b38c1988362e8885a39608f90db22476617
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:b6ab27e844b56666e33e792d5eba968e1596adacc3e9a7aa59ed4df1775e1022
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:a92adde26a6d071a01a6798d554dd40ee84cd1b09521aa0c1367e8648fc12be5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:6cdf11895a37857ee9c828cbd0ae80d16045998b1a5f478c173e09cd35a4ce60
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:5054061f4a7b82297d6fbbb33564391b6651498c34effb5272e1c30779992484
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:990a094db3bd0412b83adc21c28ecc39ec05ea8ae40621048db85eb6a0357817
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:89ef9727c5f0f778cc22e6c5f36d3d98fb436202287c8143d4744fbf427e2588
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:db10c04e8a77622828444c5ea27cf592d98b13b86f2484f8926d3eb333de5535
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:147c74f31447458513ca4d672a12afd395f0fc52b314ef65bb3993ce6da28309
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:c063229045a8ec2285135e7be82ce8f720588b88a0e8665949fe18f3567a6a9e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:278aaa6a3785d815702d202db17abbc71512058abecc9d315378b118ca3756f9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:c03a0bcc46faac347b6bdcec2a261536932cc673ee5f2f8caa2e20a3c285e178
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:6d8e09c1bd24fc86219bdce2bc504907b4df90c0b220d30649580384feaebe32