Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/arm64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:ca7ba8cfbac3bf10c367e6e04934c50abd66a6bd4a48b468a815665c434f0bee

Manifest digest:

sha256:69b5b6306adf215863d4e2862a27b6e5fe73444510fc1f5ca1f9d90bc434d1bd

Size

2.46 GB

Last pushed

13 hours ago

Vulnerabilities

0
1
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:ef7d9c261ccbd7b7f368202a1bba04fd0883ac668e02503fd868c5502ed5e1c9
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:5bfd217c47d364b7011eacdca94352132cd27e46fb055219bf59059b197528c8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:8e948556af4e88ea05474394e2da61125c23c09c92191c339fb31865a16adde8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:a904f9f4f4524a9888b3af968f27ed71aee01b1f6e01819a3a3c45481a5f7c64
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:dfefba832cea5f668c650fa5c1783e20f05163995b3de7d6e774e4869dd79b94
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:b6a664aaf0aae4c0539ff5d3657845405dd474733b9cf3828a6201e5a4a0eef3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:902ef3b005fb4f74a962347413fc50fc9d70cf9eb4b07f1f853fbe6e2a740fd3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:06ee4c924382284f488ed1a2e90acf3e837cb437658b5f995fb59417636b92a6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:d47868263a7fa3b7c6ed0c83a124cd5fddc5e560898b07476cfbead7ffdd044b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:437b9cc890d023f6899de5d9ebbd893dcd945a4e1af1d076f436d70f6c899078
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:fca9f7b275c68da742d7be8de0bf90619f1a540df58ee56fb2242d755a4552ce
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:f1ef7f3fdc130ef29c7bf30c07e88f438c6821e6f3a85b33e7b99c73743e6e1f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:6bbbae29c934059883b02ab2a80e1800167be68a7a3234454121c3aafe924ca7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:ce1dc16a13b03728d02004533d24aa549a652b7dc65e1864e1ce9b08b4da7134
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:7bf07ba243fb2b310c9b30388d92c294f999a95c1e5d39a2b897b447ac43e4d9