Sign inSign up
JRuby

dhi.io/jruby

JRuby 9.x

CIS
linux/amd64
debian 13
Tags:

9, 9-debian, 9-debian13, 9.4, 9.4-debian, 9.4-debian13, 9.4.15, 9.4.15-debian, 9.4.15-debian13

Index digest:

sha256:6fb8f27e4e09c6161d95f34632ef01937d030d1e33c79d0a6d7250523523f60e

Manifest digest:

sha256:431aa029a60ac8a4fdcba644471f2f1c2d8cb332ef363c728c781837194ba359

Size

141.39 MB

Last pushed

11 hours ago

Vulnerabilities

1
3
6
12
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:0b407b3086214ec6ba74c68286134dfcb993fda17b0fb3cd6fbc6611606def87
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:7b754882dadbfecb852bae7978832c6611851da0b1f632632f90882b7996b69c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:8372ce50b1570038c91f95eb54550971432d38eab495fd0ca6cd4f3c41475c97
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:8c497bbe856a50bbb4f94de9dd5141e4bc4a9306b2f2a53781c486da795cf678
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:0f25d9d4c7a54d86fe195d7b584e3a699046bb3a1f0bf50f682eb80720552e38
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:849dcdbb585fba48f23966c93488234d2af0bb53ca810a1952e22f1fdb77dad8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:f983c368445451d809abc4ed463497a71695f52884dc059ec1744281ba5704a5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:36c51596635e8301600a75719c713c05cb1640e5b0c810efdd85ebb0556a48ac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:11bd8b328beadf2392f16d3ca5f5652b7e4ac9bb4c59b2a358249d2789bc9faf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:d975a8108e50874e1af8cedbad0fbe311a93eb6cd299430aeeabd293f56c9060
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:ee58b1e25e3f041a064f7b871e7a81a93a13cba5852f5d5a26430dcef7e9f15b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:ceb4016a701831db315bb10761447da5b4030be9ed1709f8d388c2aefa507db1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:c7c639aec7c84d6a6b516cc90cb080c97bd503729b42c6ed2c5cbba46b61d37b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:7d77ea05ed91a8abe895d2db6b90ec4a772127672c812780bd4b1d01057692da
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:e7c71f2b54979a1320b318cdb09f613345780d0f337d29e08caff9a60ce37044