Sign inSign up
Docker dind

dhi.io/docker-dind

Docker Engine (dind) 29.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

29-alpine-dev, 29-alpine3.24-dev, 29.8-alpine-dev, 29.8-alpine3.24-dev, 29.8.0-alpine-dev, 29.8.0-alpine3.24-dev

Index digest:

sha256:aec6d438c4e4c2f4ce960a9e2816182f72c7981feec7f52575243d5b045895b1

Manifest digest:

sha256:d5cebd3caf51e248248cecc10fca9515d0dd35a865bf7ee7dea6133c155b4946

Size

102.84 MB

Last pushed

16 hours ago

Vulnerabilities

1
1
6
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/docker-dind:29-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/docker-dind:29-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/docker-dind@sha256:7c641f7d838bce20e0adecd5ad23d91c0c9c354c5b181321dcd1453d4806576d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/docker-dind@sha256:c5739a8d74ac2dfed6330ab60775b8a882e64a4626bb37960ac0c7390952c905
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/docker-dind@sha256:edfb187b98cd2d1b8ef8745cb0e6e89ee27953c2c27ed77bc826f9fe404d35dd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/docker-dind@sha256:ddf977b97a69195039a26aa2259aa13e0f52ad8412f647b1feadc4193f26f51d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/docker-dind@sha256:77037ad307284254a564b633a9c889fcc520c2f9b42d7f30976338c149a002a7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/docker-dind@sha256:3ef2660f2c806c1b93916d65c6a766b9e6104b4747db5aa467f57789353b80ef
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/docker-dind@sha256:aff01ca01082c42629b98bfc9ecb02a0b49f93be853b5df5462e4d0c07132dc7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/docker-dind@sha256:8ac02a7e88d5fae5ed8ce71ae1a0ce016a70f289a6b0177ca6177cbdaf838113
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/docker-dind@sha256:1fcd1b94be684eff977d2936f1f7cf855264cc2ad7b6967aefacbd60385152fb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/docker-dind@sha256:9a96cee49a394bb884e6d67ae7fea6574851fcb8de997c6ef22563d74d5a19d6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/docker-dind@sha256:c2abc1df8290acb3e4be1daff9b06ac05e43ec407aaa5f72b138f7e7527f124d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/docker-dind@sha256:18ab87378f036c4df07c59a45b541d80ba6c811edb6bee20866e5865a257b1a3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/docker-dind@sha256:dac0f7758dcceacb42e99fe335b4e09db2383e2160f8506c08e2839aea8843d5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/docker-dind@sha256:99aee0fa1a8a75e53e6614cfd15f0c4c067b7dcb3c29d85e067af6c4b34c72cb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/docker-dind@sha256:2473b68567b9f4cd7e7fcfd8e8b075e921f794689a0e80e57994228487cb7801