Sign inSign up
Trino

dhi.io/trino

Trino 483 (compat)

CIS
linux/amd64
debian 13
Tags:

483-compat, 483-debian-compat, 483-debian13-compat

Index digest:

sha256:f82134221c71259640f49efe5c987c084bd06f3ac89dbbf85e0640d6745d2b16

Manifest digest:

sha256:ffd502784466990b4200daa1a7d7f039711d93ca37bbd2363a10a601d99d33d6

Size

796.43 MB

Last pushed

13 hours ago

Vulnerabilities

0
0
1
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/trino:483-compat

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/trino:483-compat --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/trino@sha256:6eabdab62c56de21df5e39163ba88da23209b2ebc99f97141634479c9383e3c1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/trino@sha256:38a4f1f310b293f97c58e341cbebdb39f5f4374af792e946704aab261c40ce5c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/trino@sha256:55bca709f0a8fb9670b9d0c376af39a4b91385f5be7be371e3478a03b27bfdaa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/trino@sha256:c6c9e473b9ee59e0eaecd15d9b0ea1029e32353c714e6ab7ff62a67959dc96be
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/trino@sha256:fea17a5e54aa54e0f6089d11ad37b01bdbb533a4850ca1b37e6482ce724ef320
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/trino@sha256:7eb8db4e0b8fdd9d6d8d807c1983fd47da3b8b65bbf3a9b98c9b715795176f34
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/trino@sha256:ddfabb86a2f1b52b57e4d64a437aa59bb7b2676c62278b00789f02bf4bb882b4
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/trino@sha256:098ca7dcc6786ee77bc5bada71e9e0d7123d32f69ac8bc2933b4579d4695be32
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/trino@sha256:badfb300ae4d44f7345d70f69229449e3df5d271b2a88ab215cc5df75996ab3b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/trino@sha256:aacb7aa08999fedd3552214ef1cb238d76288b22f53ffe77e565a346e06965a0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/trino@sha256:b1109f02e4de4150f0e64a6f3d3d6d0c5132c9946da453bc49fa07fb067d331a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/trino@sha256:62321375ee5bb4394030ba53c1a9389cdea3978b39d6ea95b291f0c8b7589b93
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/trino@sha256:221fd2fae424688445c039d6a045b40c9f98e2cd5b4d85c61ca46ad7bba65d1b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/trino@sha256:c4487f1b06d93e627203fc7a83cdf39aa8d1385c3d5674b57eaccc613aa8a4d5
SPDX SBOMhttps://spdx.dev/Documentdhi.io/trino@sha256:3e4380555d7e160e696159be078aeddd61c6b825e3bc135fdf08b12ab0306cbb