Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.3.x

CIS
linux/amd64
debian 13
Tags:

3.3, 3.3-debian, 3.3-debian13, 3.3.1, 3.3.1-debian, 3.3.1-debian13

Index digest:

sha256:cd693e53eab74c9094d8557ed0fddad053c66bc1167be70846b8a4e5e1288f13

Manifest digest:

sha256:2a14dc0622cdb2e8386928e5412101ca026b73cd8f8182a1513ed9c6a2513178

Size

59.00 MB

Last pushed

1 day ago

Vulnerabilities

0
0
1
2
1

Support

Ends Apr 2025

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3.3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3.3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:49f142cc42332cc2b58e1e251f8d85118e6076d30e9810bdc0bff1a6c7e8f51d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:51a4dfa83f24ca6e04455363ab6352dca16a2a515e3eed9c4e1a441036baa5f5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:ab74b0e190030be5deef553d215f106e06665ff3b23516627e0598444c7f12c4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:75e48a8fa4939681e871a3debfcf28b2c37583dbf9cc921d81260536e2c22ef8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:f34cbf285781d29886134e9f9e3ce2e8c85dd92fbb00108f2a08fd875f486f1c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:eeb11eebc59bf222397bce9a497f23bea007d9b9f2db2700d556566fb1cb9c08
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:5109686d1afe740ecd326f5c405b94b74a7f4e57c7e31106528253b76216c685
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:833e47d099f2b503450cbdc301388aface58fd7f6bea9e9155becfca93d898bc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:2147088d08a2e4af804b6909ce157d6c56ffdae0e48821f92f633e637a71078d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:1ecdfb6a16a532477badbf3ca57268f74fcf5d9d4608b674ed657b5a787020d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:96ceeb23dfea17abea0a764607a94d74b8f4fa54ec93052c83d1422b459b3cdb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:475f37044f14be98a5052f52e3ca33055d7f9b79f51d5461a0bb1e61d05d9a8b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:d1b6b2a10e2b8f5b0280092c8a4d45cf6228ef55cf293886f0c1129b9af053b2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:123bd032ff2ceaa2d5b3315bedd17e1ee09de3ad1bc275319cac6b2aefb7d887
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:983ed09aedd3ca693c389e5b864dd20cbc85c1fb0f957af9e93feb2acfd9f714