Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.1, 10.1-debian, 10.1-debian13, 10.1.2, 10.1.2-debian, 10.1.2-debian13

Index digest:

sha256:9acf0a4b74b2972e26093d13662b5bdb4d3ebd214b9339323370f7f0a8fb085b

Manifest digest:

sha256:7e3050647185e4ce85b75639da1a72b7f9507032baa93fe9614ffa0d61c529f3

Size

172.58 MB

Last pushed

10 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:a57280f8cb2e6b27bf7bdc7c342282bc6c8eb93a48bac08a53c92761f7354172
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:8790f2c9745cad0929827d0ddd26db0ab2c6221ef148dc5ca6e2ce0109fd1892
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:bc3feff3a8de9f14da282ce2edf8856ba06f46af88a59d9b67c57a53bee14ecd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:cfd125218a91f6909c0a032bab96a17e0094e70ead850bad206a1c71c9fa9686
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:742ac7d0b7dbf2b10e6af42b24394a07e8fa46338c165c940d1adab4c9ecfe79
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:f499157784e8e25e17252c3015cfccb8c4f370e3893f07d0628b63c1a392b96b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:0d514e1e9558f2ac390473d0284d5a4b84ad306fe71166b1d42a83a99bfce890
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:7653c6b1c6af99def759379e9ec98114e83a6e3efd759633ada86d648e177c7d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:10a41d0a71d35204b0fe467645d783a079ec7932b13758773ceae5b456b35580
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:02c21b50b473360bfab213f5965fd7d544c16461b090004520d341474d023425
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:371b09bd468993de15a0b8e830f45b24b9e0ef7bc4f4ede5a70cb76166207f3f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:d2211b80607ec1e297888e44ec9ed79193d991c33e1d9e43f467e23dbe3ce0d3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:12a47d21cc1a07e6470636d734b27e1e4cf44d888e7a722d63fa35a1970692f6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:de7ce1d74429622d33bb548cd621d8ef8dc470d97eaf39f7850cb6b37ea26096
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:0a5517e052048e3c927b7965fbc384372ae683434e53eca8902415522e91c1fb