Sign inSign up
Cassandra

dhi.io/cassandra

Cassandra 5.0.x (dev)

CIS
linux/amd64
debian 13
Tags:

5-debian-dev, 5-debian13-dev, 5-dev, 5.0-debian-dev, 5.0-debian13-dev, 5.0-dev, 5.0.9-debian-dev, 5.0.9-debian13-dev, 5.0.9-dev

Index digest:

sha256:058ef505c7a3bca8eb9969b03360633ef249522a78ccae55962dd96946b91b4b

Manifest digest:

sha256:4a023330820bebb2f6f54b38e7b39035bf2202ebf24ecf0bb940ca6ccee14e82

Size

239.52 MB

Last pushed

12 hours ago

Vulnerabilities

0
5
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/cassandra:5-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/cassandra:5-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/cassandra@sha256:51ec7d7b842fab3cb32d3bcde5dc7b1c8785eb46fe64e92be1f03858362e1eed
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/cassandra@sha256:c16a97910452ef6150111662b8d9b7e6b4410a64679184a06d23eaa88f25a561
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/cassandra@sha256:693cea4674583d7bcc8771358ff3821d264c1df53dd2d70c5242a340d67057bd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/cassandra@sha256:30ba5a93def76ee699655830b114eda3e901fc641593e1fbf42951ca58342be7
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/cassandra@sha256:f1a072ed2b2814aa32b8f6534b96ff07768ea12c1457e10550943d7448114ba2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/cassandra@sha256:7abae53840f3053081c6d2ce5dde6285b975d554fa62846d8ad7af60413953a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/cassandra@sha256:f95937a7fbc4a45bb4341f545cb0564ff6c967c17430be886775f85059713b65
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/cassandra@sha256:818a55315097968d31b45932c8bdb3d6697c9d3be10dc7cb49f46e95403da156
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/cassandra@sha256:bdb14e3382b5d5dd1fa46b61ba9913aaad6db8e9b5098dbb6c4963f0a052029c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/cassandra@sha256:d2312ee833de1fae1f650f1e776548ddf6f3dbe264681f0f1d8f0b036ec18acd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/cassandra@sha256:37fd7dd4ab35e5f475b004082180d96f65958d47d657e6fba6ed8f666db25681
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/cassandra@sha256:e5d5cbceadcaf9526984ee01d0dbcf3398a627b659881a3b4454d6c485f9daae
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/cassandra@sha256:06a113f1bd60758096010679f4a15cff3c086e7341f44ddc9a08a4308092fc46
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/cassandra@sha256:b41064bc57ef7085b877f16fbfe668cfc3fc2e79ef4b46139a3f418b04fe4bbf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/cassandra@sha256:51bd203200ca432190aa865064386b559a101a408470eb2b10ebe0489078e3c6