Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.46, 1.46-debian, 1.46-debian13, 1.46.1, 1.46.1-debian, 1.46.1-debian13

Index digest:

sha256:ab83f6ef0a864b4d143f998a81e3454dcb20658516a9b2d4e48b938fd6a2f72f

Manifest digest:

sha256:72068eb637fea3199b68abe962fe40d6e35b95c5e323c1b556e7d0168629c008

Size

36.65 MB

Last pushed

2 days ago

Vulnerabilities

0
0
1
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:47cb77d0440dc2092a1ff98b393d1078f6adab81124b7bee9770216c5075ffc5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:0979956eea5560c71ea9e7ce7f87d05ec42ef1c93b470114902d631ef568e5cf
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:e5e34771bbbe9974675e6d0a275483000db615e515dfd20e01e0f99aea36aba0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:331d590cc6573f50f732d983754a295eb1d40b5b541b2bf2c7e1c08cb4dd7681
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:b192f397ff84dc0156eecf1963ed233f31bdccfc91e4a483edeb84738bd26f80
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:c6701b1477c06be7eabca2e246ab87b15598a1feb53b869bdaf2bd6231441d44
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:6ea0dc6de4fff080606ca6775876674a208012709f95461ee865e0ce47932483
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:629d0311d9f9301a57df07d3383f8dea572f4ced7d1a38b599622df7ac2418d4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:bcafa5cca02ff86b83877470d3f1e82cebe059552afa8d7f99afdb3e597ee50f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:65309fb3d351c215c2654232ef7466a44e895d6a27cc54e831b3a3dd7575fa7e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:e4301e40c4a2c5bad6ca5e2131a0c591ea6bea4eee52a432490da787dd714ebf
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:d91311dcdcdf96762d91712663c64d29e10e3cffdfdfe1ead0a208dd8372d082
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:90e30dfd21684476ef77decce4d7294e4479edcd971145a017f7ba116b123b22
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:561428666309ceff2ccb2445e0dc34fc46686a0111ea40c455437f899ad38387
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:d21ba85f597545a9ef2344b961893db8861f362ef7971707ca874b3b5625ebc3