Sign inSign up
SapMachine

dhi.io/sapmachine

SapMachine 26.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

26-jdk-debian-dev, 26-jdk-debian13-dev, 26-jdk-dev, 26.0-jdk-debian-dev, 26.0-jdk-debian13-dev, 26.0-jdk-dev, 26.0.2-jdk-debian-dev, 26.0.2-jdk-debian13-dev, 26.0.2-jdk-dev

Index digest:

sha256:a0547a6d96f044f8eb981434c2b9763d542adf3c79ce5c8bdf1d38d6aa2fc81d

Manifest digest:

sha256:d98307109b44f3634440821d2d5207be09af5f2d3d1cb73d058b1af26628629c

Size

86.19 MB

Last pushed

3 hours ago

Vulnerabilities

0
1
0
13
0

Support

Ends Sep 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sapmachine:26-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sapmachine:26-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sapmachine@sha256:07f8645020913bbf33feb1b69457143115ee071edeba86c7886511ed0dbc21f4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sapmachine@sha256:6417f6dc50f499f4f26403e8eeab75c78674be4658fe755e56c5d3d119cb0cd8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sapmachine@sha256:fb2f3c2c2dc82e8d8414ae1367c2185365797e2a39bba079d64a119a26da3fc9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sapmachine@sha256:7d44700a485ccf7fe25746404f9e33b3e8cc31e405ced657c4cc2feb2bb89e63
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sapmachine@sha256:b3e5e6a6b281bf444b73c0052477cbe3d368098228bbb1538224e0d73489e366
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sapmachine@sha256:f8f6f3eef16b95d98ec28b016c4e1257c24ca99b17910deddf8a0fcace226c67
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sapmachine@sha256:27d6504ee53ab52eb14ccc946f71b65b1c2a4ec220f2cd5bc919ffe1e8f2c995
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sapmachine@sha256:c2bd8ee19140a62e2f53bac08aa0f2c6d6a6f011e65141c79b1d58ca4d99758b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sapmachine@sha256:7023ded07dd2be6783d675831421a02800702d0a5191334ca40c5a601ebee01d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sapmachine@sha256:9269d04ba7f171726e9342a5bef01bb1f79b93d0419380d9d0f2024b1024fe33
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sapmachine@sha256:62d222c857b3052a621a555a3380df0e0e3d20cb2c3b111442a8941208c6829a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sapmachine@sha256:83163e96cab8dd371b80ecb6aa2392d46d2f4c61147ba3ebb7dfa2e634c540ef
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sapmachine@sha256:1296ef0870c6a51674d637a55360697c07715f0ea6cfce116df1bc71db6757a0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sapmachine@sha256:06d2272e00a39432a04fda5cdeb9d4cecb259fc85b4768392a5cae3214a23844
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sapmachine@sha256:c347528949aa55423f7074136771950fce07d88bf0032a643cfa7f1924adb72f