Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.23
Tags:

11-jdk-alpine3.23-dev, 11.0-jdk-alpine3.23-dev, 11.0.32-jdk-alpine3.23-dev, 11.0.32.1-jdk-alpine3.23-dev

Index digest:

sha256:d2f0eb865c773d37abe57077b94adbb6e3e68ed7d4c2ce3e78309b867874a704

Manifest digest:

sha256:d0bb81fe8015f62be1093da23cd7f2b11741ae5f21578cc955501e5ccd95350f

Size

174.27 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:8dc37c73b7dd4939543539ddd2f34ab23b7720a645dc1d0aaa58e3c0a322ad5a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:0514bab375d71ca434e61b9a3c601a633d9154918572a8d46adafc3fe2c5b3cd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:4723319a063c755ba673cf5b7950006578d76598519967fd45d97e2397d716b5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:85740878ca0eb73d34e2135c5d3b3a2d2c86a3463859d04164c598983fbfbf09
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:9f07665726fbdc85a71e3d87d43bb483c8b466f8a28179cd238255109bfc9dce
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:e8fa2a45757a373de9a33a1592982aee8c3198a176d351b764bd7fe107a4bb56
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:82d1aae15d573ddc4e7cf1c5592bfc7429b6797e7d1dd741ed838730b1a953af
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:a381efbf1a79bab5eba36df6b9ccf70e181ebd9350d2f2ff952626975f172003
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:8c389eee1ee55a65aeef832221af3d964250ee7fa029f141aa802628331acc49
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:f8c275eac6e19da2105832dd4dfc4eb54bd5d976bf935078216f8dc4ea60c605
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:2bd75c81b0852720eb55f621419294f914da61ffb0b9688622c8a44fc464e1ef
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:5af3f8b73315f47b043c1b5e485b7b681e3bb92f0588b74d7af9fe72d054aacc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:ca239dc86910ac943e6299f918dd3b594b800313b0002b29fcb315e3d8971e5b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:e76a6fe8b7d66a446ad6b8082d19228f63b4c449eb150cb504f0dc416c1f4bd8