Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x

CIS
linux/amd64
debian 13
Tags:

10, 10-debian, 10-debian13, 10.1, 10.1-debian, 10.1-debian13, 10.1.1, 10.1.1-debian, 10.1.1-debian13

Index digest:

sha256:68091c673b871938d33f8207baa7b513a42885cc423dbd8c2c99d342d6b53444

Manifest digest:

sha256:934d9be8529b756fd639e35b1c5fd897083d36b0e55358bc739bb0f23e94e490

Size

141.31 MB

Last pushed

4 days ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:a4ef77026f72f603ed0d44aee8996d578cfd8fcbc808eabac7d52e7669225d68
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:9e26a3b348a39e14f694df9bc0a7038f89f2b6948728ee267aa1dc7a2643e935
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:0bc010efe844bea8fe35b6435beb754afeeb3f2b12f7a8ff89ea3beb44f23e45
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:230cc1581e97291628e2c23c86c5301de2d93149c68b62fde66ced7804163783
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:10088ae292db3e5658849aceedae3a4003290fdf2e2bd1c60d514c7a13ec672c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:464975d6a2a9b8cd5057864cd6bb750094ab383e46885197e39bff454f157694
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:e705943c188235e1b14ba376902613ae9905f27b46969f7011ab5ac43177b071
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:142c1f5e9d2e5606347047428fb05499222a15221c8cd01ffad8cd8075d5c957
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:861a5b3ba410d0061998481760d9efc246f3d8b17ae3f3ad1c7b75a3564ba17c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:e7108fea6c47adfcd0bc6784d928e8845425f68d48b7c4f9af881370ac28297d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:a888d8355cd7afd5157e74f2ab4ff52d1b1777501541298940208886a122bec2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:511273182984fa3e911d0adf2f27727b2db74bdf78d545734f4d260542bf5b55
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:451317b9f89c1af018769251ee47fcf3f385f6215f5bf50668f9e355617bb7c7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:4503ea47eb103da9e7cc052deb75d51699c6f97d6e343b39f2061d227e5038a8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:2d4bbc2292a946c9c2109cce2459a203f448efb7283fc911c5e48d3ecb3ee9e0