Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

11-jdk-debian-dev, 11-jdk-debian13-dev, 11-jdk-dev, 11.0-jdk-debian-dev, 11.0-jdk-debian13-dev, 11.0-jdk-dev, 11.0.32.1-jdk-debian-dev, 11.0.32.1-jdk-debian13-dev, 11.0.32.1-jdk-dev

Index digest:

sha256:8294d919a6ffbc93ed904a1326f13d496f81dab0646b9a2532e990a538cf2dae

Manifest digest:

sha256:56dca757f4ea694c356cd8870450d56adff8649ca3742bee7d83af90b0c26035

Size

148.17 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:ed8dea560f78a14e09c1cf9e82978d6c42b03ffac9cbbd86432ca0046ee359e1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:8e2c895f8c6b97b4d020825f5c1555dc86e18597a2b4348e362292010dc63389
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:a375fe714326528afb697267eb97a38814754496e9cc1ef003bdf734a63987c7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:60b2f30b7fe538a6d3899c28aa5d89ae96101fe5bbee382e8ee73be4a5640807
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eclipse-temurin@sha256:cc22a5ae44cd7d5c67fd530b5976d2435b5b60fbab3a14b5d31854d98d90cdd2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:a50c3c3925b652d2b6ceca77b609fe09ecaf5ea81964c63d84ed57d7efa92432
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:74e18808877d3ab62a37f9830a3d5bc1b62bfb902cda5f2d71c39abe19348d4a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:f94ddba843b8103149de433e93c19a3a13b3030897231bc9d366943ac77a0e8d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:bdf6a441e93e20d0c44ecff3354ab83b1fed5555892447b7aba628246ce4cc96
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:75032159969023a71d2b79818fa5363a391e3c8ac164644ebc71ad4ccd060a40
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:8c06bb4a47c0fb0e1dde3b8a0ba38d3fed872497946e774543d7ec87a2e36511
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:fae4338439b2b79e16f0d8e93a280dce720c1023d74572b6d48a648491a1ed2f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:e28da6acc9abeb859c368cc66586975fb2d4afe94f1e0a5597d80ccea52eef69
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:2def111902bc29724810d0af05010fd8c2c47909dcd6c882f6abbcc1732a7ea8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:7eeb5eaaae197766e50ae85d7007639e869dc48831f5237c20c813bc7014eaa1