Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 8.x JRE (dev)

CIS
linux/amd64
alpine 3.24
Tags:

8-alpine-dev, 8-alpine3.24-dev, 8.504-alpine-dev, 8.504-alpine3.24-dev, 8.504.01-alpine-dev, 8.504.01-alpine3.24-dev

Index digest:

sha256:3bcc04e0e39cc559c8bfe96a7d100a6f265c2e691650ce922fff5dc7002a9711

Manifest digest:

sha256:401ee274759d96614879e5340ab2db0ad628bb0df9d060135c5845fba281993e

Size

38.61 MB

Last pushed

15 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active until Dec 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:8-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:8-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:93864b2705199ff58c23260ec93be11a5a10e4282fe68f572771a76ef0a9253c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:f784cb6963fa1a9c8164713e5038b441bbd0823603148942134f3425b86fc2ea
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:6830b3f32e70d674132315084271b26ef058ec80783e5479e86b3a3fe024d7ce
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:3c0750685b84d1394e00125bdf2436a04b6acb312653132126ac4055ec7c6045
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:80a53ff5b4194e963bc8ebcb836ec6ff6b1c7df03714313bf8a891e9bf036034
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:5a0d0e4811ccaae7646d49d4479f27222b37c5461cfbccea8d0a623a2c4596e7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:364a6bb3af0286fbc474100746951ef07c0919391cb7276dbe56a5bd8fe05e1d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:212d15f7a3daf4f60e2f0e5358a444e0992f691d6d54e0c2fbfe93f8077d3b3f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:06bb44e99576f5d06156363fe8c0b104cc817fe073f9a646385ebee600080482
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:943974076f5afccccc738ab76d4f29f0fc7a4f869e88425a66c9ac31eb798d11
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:b5b5bd0cd3be58e37cca6df31171b78c8b54ddc9c59212dedad12c0b59b07957
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:6fd54f2a57cd51925dd58317d7e476d8bdc881a621c3fa673b4ba2ed0e5039b6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:61ae4f9cb8c77ac7803ce081f2e854225bef8b10a5cf33ff14f8e1e581816c11
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:83aa1a92773f6d67c01c9064a9735836bdc24d284a5ae1d4e3b3c59eacfe453d