Sign inSign up
JRuby

dhi.io/jruby

JRuby 9.x

CIS
linux/amd64
debian 13
Tags:

9, 9-debian, 9-debian13, 9.4, 9.4-debian, 9.4-debian13, 9.4.15, 9.4.15-debian, 9.4.15-debian13

Index digest:

sha256:47549e323dac4be210bd0460e4f9d67268f6058fe9fb995f72f61fb9cb68fe25

Manifest digest:

sha256:4a159f3d73e32233db47dea26fd404e160f3975b716fb77caf8de21e67870299

Size

141.40 MB

Last pushed

13 hours ago

Vulnerabilities

1
3
4
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:e654a7e3f7720f6925521dbaf91351dccc373515d15567fe88b00812b02ffa44
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:1146da0f3535fc9963085fa7b6efd84a507b281fda82526a955df76cb8da8049
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:b02c71091a1285e7824967cb7ed71198ea3ea2588fa93096c830581061cbea37
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:30ce8491d5d6a42865a5b4e1978990c4e19986bd96dece4b3d6447385e77594c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:d7c7590b20d49bb871d4380e39545ae102df62e9afd68db6ff7e54ca19ac4528
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:c87d6827d94c5c9cab7dd9b251735cc153b77e24c7035c4181ec58481f3414ac
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:125d73f5cb82f1c77c2d48610ccbab0058d480ce09c6f1a145b560bfb568489d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:94cd67a3d4e9cd8c957f8b3a0d108dfaae376cf82fbc97ff272a9b75038da42d
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:9d19037e659cbdc6d3d40e346ee07f3ecc24b32830dfb84171dddc070258adb1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:3c292c34fa3b00560a8c41220847feec7e8f61d2e558b4245154ee7b7e7edb5a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:e42a91f6e0aeb545f66df5dc7a1b5d8918064f6f1ba0b91158662b1c8ecc23c8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:b619b70c81c2362cddabb26f45009cb436c3f0d52363411665317b4cfde4a4ce
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:ea09c45fd62b01fe2e989cfc3adb7aa2b893d2aab918d1181b49e3be80fe6cae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:8f063c367c762c042d4bf6d4f17fd4d5a24da73917b60284e8251296231321f9
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:543d5012f4c145dea4f195d539557408d889224775f7452d5f9d7d5a400e13b1