Sign inSign up
Virt Handler

dhi.io/virt-handler

Virt Handler 1.8.x

CIS
linux/amd64
debian 13
Tags:

1.8, 1.8-debian, 1.8-debian13, 1.8.4, 1.8.4-debian, 1.8.4-debian13

Index digest:

sha256:a4dd3a33a5311bcda00f699ad3f902ceb8123bd9d147f56bcff01a89fa3e94a5

Manifest digest:

sha256:9496b89fc97a91428264083c641f3864aec6c0f8d865026079d19831d76ac198

Size

42.60 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-handler:1.8

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-handler:1.8 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-handler@sha256:de392aa9a0aeca77d36598cedb450a30ff75d37fe4c2f9fda62e0cc9471222a6
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-handler@sha256:a33f93d9f068fa21382c3f4c169b836341070d6c4f1f75d240331091e1f6ea53
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-handler@sha256:c32432434e1fdb20757a4667c12d612b9a15422acd4dde7ee9269ea35a3613f7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-handler@sha256:fa3075674176859f5bfef621e65c6ba3d258026d86d139962a080c9f2029e9ca
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-handler@sha256:5abbee89375bedd30e4651d5c73861100d4c3cdcb1b1d209bb1ab1ba99f9034a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-handler@sha256:116b89aefff9413bfd9e9abbcb025f3b13dab4660ab7570dbd4982c9a1b607bf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-handler@sha256:98af56e23f3abb917e8eb9035c1627867b810d4cdaff058b8b3bc4f8b7f7c1b9
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-handler@sha256:4367d7f4c2ead375463a021e3a017e0d83b55808b2514b601f7be7354681c18c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-handler@sha256:2a0332927eda50855a049abf9ee4b2e1d2dd9e62ea552e9a0c638194ddf2a599
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-handler@sha256:916ec628863fe1e5f3f00b5ebbe3f1c20e3de69c7b36c5e812a0eb9e6b81bd1f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-handler@sha256:cf62f55d9313b266d614b181f5150886d51d7a81b05add6d86c86dfb51e375ad
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-handler@sha256:21e075da9175a507a45a37fb45b4a9fa0ea0575eb29261bf2e06d7c1712a0baa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-handler@sha256:896dd579d82a10b66de3a097514429d20b01456f3ffea678ba18c80287180b7c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-handler@sha256:6e46d1877b0b683ef2baa0e16d6cd464a6718da16ffc6ec6602f4c26fe3e6173
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-handler@sha256:06963ff1e0bbd0ed138fc02ad9a91373a9a8bddf3363d254076b78b3fe4ae1b9