Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 25.x JDK (dev)

CIS
linux/amd64
alpine 3.24
Tags:

25-jdk-alpine-dev, 25-jdk-alpine3.24-dev, 25.0-jdk-alpine-dev, 25.0-jdk-alpine3.24-dev, 25.0.4-jdk-alpine-dev, 25.0.4-jdk-alpine3.24-dev, 25.0.4.1-jdk-alpine-dev, 25.0.4.1-jdk-alpine3.24-dev

Index digest:

sha256:083b00d079f9bb5913ed184983634b39da95cd579c618ab59334405f54ea7f7e

Manifest digest:

sha256:c6476b8367a784f524032dadbd387782ac9a16af5fe58a9d8bc2f27397b2304d

Size

122.34 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active until Sep 2031

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:25-jdk-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:25-jdk-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:5d6af66d80a38932da16e91b53b816f9c2f7a8a88de349b9548e0358dde458ad
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:e0e68e5f6c2190419ac78ddeee6b12972009ab1236d4533ac025ef87053ed863
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:cd393d35edfd705f2e8f6b729f156b4b59217527df9740944fb306fadb94af34
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:d1a9006a347376270afc79c655b477f8039245f0092866f5b811f3da5fdf318b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:53c649e4b3f593df210c57a32386916c51070c9833dc333d2cd06690b31b2fc5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:bfc267f4adebe250760c8f9e5e4deb30759770be4dafbf49e0783e4b732efa4f
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:606972c972ad5ebfcbb259027235cbccb9d6862d5fee42407f102cddc04611b1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:44657e93e764cbfc36159b9356d6dd151121764533b41fe3493adcf4b545046e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:99d0fb1899ab0ad9fc538f1b3a22902bcce1bc26e5a4b44459b1fa7652db8742
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:8fe179d5ac58c10663edcc22b16438f8bba00473de5804a4ffd8f5b3e145878d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:9b646d1fbf7f4afabdc8b3e7e0de36f04d01320bf41139a52ccd74aac137dca1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:df5ea693afaf8f4251b9dd7c1695504b9c736bcff2ef59b3d4df02c5ba76babc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:9b2c2945251b4009404e07db840725db2c7b8ace04ecd3ece71bfa8dba9f82a3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:154ff85951d733f60707292c6ff99a9e28de71dd284d5c97d0269ff9be87d90f