Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
alpine 3.24
Tags:

11-jdk-alpine-dev, 11-jdk-alpine3.24-dev, 11.0-jdk-alpine-dev, 11.0-jdk-alpine3.24-dev, 11.0.32-jdk-alpine-dev, 11.0.32-jdk-alpine3.24-dev, 11.0.32.1-jdk-alpine-dev, 11.0.32.1-jdk-alpine3.24-dev

Index digest:

sha256:2f07eac816d3e8a1dd90c96ab5bb28adba13a8770d79e696dedeab18a9c157c4

Manifest digest:

sha256:6117e8048abce33fa7c45c48f5155384c1ca2fda00bb1d9bace891ff6ba057a7

Size

174.28 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:8b0051df27da7d027d2ddb07d4b6800b0dea8f13832057538d83b314ec390ab4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:b36cfbc59c118f6acc114540056816a8fdd22dd8491262ed2f8e9c0e976c142c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:18e6c7e38a451737e0087367dc15b6037102fc2ac09e6f53a2b2085ae2563160
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:f78b2089792c18a0635b92921b7b507ca38afb319869f8449fd8c88563e429df
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:cb8a3fbc4f514a04519ed9a5cb769791bc5920bd56c3642c9e6006d1b6856b29
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:57682d10de2906036f4c4d75354c59dccb7aced0a04eb521ca1f47028d03b998
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:5f3f7d7826d22ba210ca7fe863e2decd73203ed48c8d3665676c2c84f6494859
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:fa81eb1e58ec9b52b17a894cc429b8bd899757afec4cdb1f8716c4f543a2a49f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:456694fa10618f4350e6eba22e09eef94584b70cafc6407508f3a1b25a93f190
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:f72504fa1aed59e56f7575e5a4b9bb0f2aaf1bfda632480d2eb6f1d5401a2cc4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:792a2bd5f1b6ca6bace37fdca9ac5d0f87dee5091b307f01e9a0ed21b5dd3c3d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:bf71237f9771e1329b6dbd20941f7679546f7c51a18d190aca5d4ab932b8ea20
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:e98b2206ca0c2b2f00d3e2cd484acafbe88623e99c7e8e0e68de0cb461c7a9f4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:80e62ecf4a82bddc1db3361704c37c88c1ce54f0cfaed08c747fc74643a19550