Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.24
Tags:

11-jdk-alpine-dev, 11-jdk-alpine3.24-dev, 11.0-jdk-alpine-dev, 11.0-jdk-alpine3.24-dev, 11.0.32-jdk-alpine-dev, 11.0.32-jdk-alpine3.24-dev, 11.0.32.1-jdk-alpine-dev, 11.0.32.1-jdk-alpine3.24-dev

Index digest:

sha256:a818541056a5f0113c20ea65a9c9e88270fee75043b87901fab8e318b6d97ffd

Manifest digest:

sha256:5816da4b996d6ac4bdcba95b1d281b140596eae0ab8a3a71c4fc31b2ca194fd6

Size

174.28 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:2c02b03557c0803b5516689d2e86ce10abddc20efbb69910b841db255ccd0daf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:1078c3ccc78a1a86cf5ab90f125f49144d6e29d0c7a207cc81441503f7f25a86
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:a87149cfcf22aeb51f156597f6549d03678955379c955bfb30a9bc701d61739b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:eaa3fd337ed038f2a7c54c2ba84c3b7b993366e9d793fbf2e4e4e2f275109a29
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:14b1d47f24a8daa3dc2cc25571baf62eb7430a5566c9867e428fdb95afad36c9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:afdf8811827fc2ec98516f039edd338fe78a25f48178f12c74ae512d792c8fc1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:414938d757afa4acbf59d1e1d3f5c5603858df346938c8db199c979721d83552
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:62bd65794f1995b6fd92571db5ff1ef187e3a95ca656cd2fb1b8ebfe6274e81c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:a5697d59f2d8f65638bbddfbc9396ef8e9d26a1295ca24dd4649f5ffc46a428f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:f45ec456cbbbd10cc4d4cd278b67ab5c654ce610e63b0a2bea2e467a757354ea
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:7825ade7de431aeea29b3da7cb2eb71dc35ace266a20137b13fc62487a115de4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:e54803f34c05072c3939f707ea16aa03c8d463b39a9f839c6b8d8d143b3f2298
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:d4ceae2d8d7372c748ea543e5c3098cfbcd4796385a8904c87ec7be74d359a3c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:7deff2347b6570f1095bbb32318573c5dbb41a8280aa9c6eba7d881a42d7fee7