Sign inSign up
Trino

dhi.io/trino

Trino 483 (compat, dev)

CIS
linux/amd64
debian 13
Tags:

483-compat-dev, 483-debian-compat-dev, 483-debian13-compat-dev

Index digest:

sha256:c0a81c20e2dc833fee7b9d64ba5558fa040362afd2227e65dc9462cd13311557

Manifest digest:

sha256:77f52a7448f1de47220c7105868f46fbaa7f1dd1d61383d6846baa8f05e7b9e8

Size

831.88 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/trino:483-compat-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/trino:483-compat-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/trino@sha256:beacea597340c8287697e57329e891dfaabfc708c97907e548cdeb4a52c84250
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/trino@sha256:9742144f1df467f4a63a26d6b1967442976656a5beac7c067c6153508416a70f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/trino@sha256:dd40b2783470e7a02b7cfbcc5fe3bbf7cd533fedfdaf048e357b3dd52b0733d9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/trino@sha256:f1874fb1c3f28a095b759fb8a183a1063e53e29294b668ab4d2d54dbab0af093
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/trino@sha256:92d8aa693a2ba6098ea648743eea3bcdcc9400f6bf99f369499076dc56319a6e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/trino@sha256:f02cfdb603e2c6c68a9350b24092da8c91b228f32cba020b96af84235854e283
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/trino@sha256:188efc1364dcc6ee211e0fe11c124d69ca94cd72e940a16f8d55513aee4a7581
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/trino@sha256:2436b9615aacb23ccdbedfd6f29465b8da32879450530127ecdd5c02d3bea25f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/trino@sha256:916d55d2afee1a717c18d8df1eae6b8dd476e2ef982405ae2feaa1faf66d46a7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/trino@sha256:275ed56dab3a4823f9fb75e9869bcd25b60ee96f6bc1501e7095ec873dd14de9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/trino@sha256:a1e95eff35ab7807bd6223d1bfcfc890aa7ad9409f9f1de86d39b353f8522822
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/trino@sha256:43d9654c4bf4e218606e19373d0e5f3139620fd82e66a2e7d9e2dd7e0529ed9c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/trino@sha256:9e670b97fc6836fc215964e36687874c42bcf736a8a87073ba53cc4e6a2d4eb9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/trino@sha256:06690fa8dbc73c876715f1d90bbec1ca10db21c4d089a14c8a178d1888e408ef
SPDX SBOMhttps://spdx.dev/Documentdhi.io/trino@sha256:7b7092a79e10f2ca85d698ad8523571a5cfaac77f5f918b2ab1c00b2a0ae32cb