Sign inSign up
SapMachine

dhi.io/sapmachine

SapMachine 21.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

21-jdk-debian-dev, 21-jdk-debian13-dev, 21-jdk-dev, 21.0-jdk-debian-dev, 21.0-jdk-debian13-dev, 21.0-jdk-dev, 21.0.12-jdk-debian-dev, 21.0.12-jdk-debian13-dev, 21.0.12-jdk-dev

Index digest:

sha256:d13aa9fb45367d01b21ed7382db8fb01d0f6e5c88626b206360d255f6585e605

Manifest digest:

sha256:6af276a5b98cdf680b8aab414dc06995045b09c5e82c42e490465f4c3acd27df

Size

159.72 MB

Last pushed

14 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active until Sep 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sapmachine:21-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sapmachine:21-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sapmachine@sha256:fd7de969b56fea4bf2a202b7d7f4292c0d04e556230fec56a0a4116b1b5b1cdb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sapmachine@sha256:e6222f6f8ba6b1a2deb0cc30fe896f82abb0fb177fe26d92525676ec436d6654
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sapmachine@sha256:18e3a5559f9df37ca50139509b3c1e493f918c07c1a967a9f81af67bc4c0b594
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sapmachine@sha256:9672515521609ed9cc6ca470f83cf291db1abdbe78f13d02346c84029b113034
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sapmachine@sha256:a957cd5b27adea9ee260fc794b075c6c63912facfcf2f955735d871cfc49633a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sapmachine@sha256:7d1b3b03db9c25378410093d266122c2a02294f328b5d944fb7b478f869297ab
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sapmachine@sha256:93b59bc088fe59e46667eb003bbdfdf640b946e928ecbcb978774c16fa016c89
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sapmachine@sha256:ab03533da20c4e51972c87f14ba996c4ce897dd8f3882a95a45a349a85262f89
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sapmachine@sha256:bd4a33b145e896b1cbdbc48ec2c7798b6d57d5c0a889cf1be4ab9c708cca7abf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sapmachine@sha256:9aa57eb2a17e80af0ad3d034d6fb1cfab8ee1680bbe69bead29683fdadc91db6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sapmachine@sha256:bb739793796e6030c16f1759f633f2fb589411a49a66c21e8ffd814f8468706a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sapmachine@sha256:26a05820881ed203ba11e9b16476bf2029719e1af3450d690f9ea2ca1f50d747
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sapmachine@sha256:052bef17a8fdc02e77bbafa3995e2bd803bed96e0ff435d61843784d94a1384d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sapmachine@sha256:9e4760c737f3053e175c8320d1a6b7788bf6218a4a127a624ca54fc8f5ebae17
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sapmachine@sha256:531ae1c1771a81e1554b9924879c250a4406b6eae3bce69c2eb691f6fc715c99