Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 10.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.0, 10.0-debian, 10.0-debian13, 10.0.12, 10.0.12-debian, 10.0.12-debian13

Index digest:

sha256:71431a7f630ffddbe4395ebb160e27b224b3e1e6318b9cc1fbcdf0ee9e85ab1a

Manifest digest:

sha256:a4e086920efcddec857e7ff882f6fc47765b32a5e4495ce4d263c9d98d90ec29

Size

61.15 MB

Last pushed

6 days ago

Vulnerabilities

0
1
2
9
1

Support

Active until Nov 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:763cd035b1dbb6d4424f7dc3576962d9d50ef7c4dfe429aa0b98cdebd1a47206
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:03d30ed594587965bcbf75f5e07dda30405a2b39c0ea70fd5610400667321a6c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:7b6bb317500ed9d107dacfa598cf7641d062885e4c5280099b0a75793440f490
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:a3a304e613fc38d5ef19afbf81d94b8813be136908c9c308f4c8febd2675bf2a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:fcd94c3b7513fbf829a30533331d24545ab16843b174dcdcf5620a2db446bca6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:a8375a593a41a923af34f5b10f13753910e9d404c1a3175b54dc9c7e3e835c94
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:792ee1b2db84c89cd74ed3b9bbec04e53e66dbfe96859b20356876ef84155e7e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:c3c7ecd6d7e6b167a03fec03851925cd8be69595b1fd973823e0ab30598dfac8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:9f76ad8e263e0df55cec42b3de2624c7b6611f08e81ba09309cbdaf1d2b0e61b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:35971530c290e529a9025eb0760133c29a40f87b061afcc83b74b0b89471c6d4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:fd7dca486b91176b6e08b0e58e074c917bb38f2ee4f3cd0c6b982656bab63736
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:c5918ceb6abf69ff5a14443e35cc3f435094f6eecbdb3a03792c75ccf58a0244
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:9b38780dba8a48e38a3ad80f8a0bb447ec0c559f02348a0de45a8108b47adb15
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:c76b3bb985143ec55fd53eb254a473cc826255f5eeb823661c6f8eff3c9d3cb6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:43a6663574cd1618797ebb8a45808668a07671ee8088293fcf8ae76b28a915ea