Sign inSign up
kubectl

dhi.io/kubectl

kubectl 1.35.x (fips)

CIS
FIPS
STIG
linux/amd64
alpine 3.23
Tags:

1-alpine-fips, 1-alpine3.23-fips, 1.35-alpine-fips, 1.35-alpine3.23-fips, 1.35.9-alpine-fips, 1.35.9-alpine3.23-fips

Index digest:

sha256:ad8d4656dbf2ea4e3cfb4b4757ace1faa84585b2e94a1cb9f71dc9f87e38cf52

Manifest digest:

sha256:af7425f39595c664c05954b5365a4577ed2b0ccb7c43be23f5c8e9e1aa6a289f

Size

32.91 MB

Last pushed

1 day ago

Vulnerabilities

2
9
0
0
3

Support

Active until Feb 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/kubectl:1-alpine-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/kubectl:1-alpine-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/kubectl@sha256:32324f0b78cb50181eb613cb78fc228d1b4187f9eb497bb82d93f697f4ff4246
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/kubectl@sha256:3f0850674b65f10625a3388fe722aba67ba5040ad9a295ec63433982c1842d80
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/kubectl@sha256:3adbc88efc0a52f6c8aa15de3e5b6e5b9adf83b70a64294413dc3b4fe4a801d1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/kubectl@sha256:8afae92340bf6c6418ca5eff086bf2e81a041c8902f3825f4369f652e847627f
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/kubectl@sha256:14452bf61cf85a1d167d52ae3a5df2236f96decd59f2eb0918bb16d2391839fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/kubectl@sha256:5b7119ed6b16dd74b77de217166c2af92a641b524646e3bdb75ec31ce9ec77a4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/kubectl@sha256:b772950c2f2ea509aad17c682c46b3052b8ef5c14f685f2ecb4cbff301d2aed7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/kubectl@sha256:35d0e46cd924ba6ffe873e389a3f44daa14dd286a0415a38ddf37317f4eb7834
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/kubectl@sha256:f2eaf7d6ebdbe6ca391bd7afd5dfcb6723e41a083642f1648b821207564a74fc
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/kubectl@sha256:418678bfda5f8d73bd561626b5ef337b8eb2179c0081aa7b62e6f82f9c226910
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/kubectl@sha256:9f080086951ae0e27cb6cb1a38988e706f8fae95f701ecb6a73f27cc8cd63dd1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/kubectl@sha256:24a8c454d4dfa2c170d5470d1a4b200d261682e3be2b314ca4795958d5062e8c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/kubectl@sha256:95e5050e1bcfb293d11f3e86bb6bc0070a25db393e8fed9f5e062d8370b3c018
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/kubectl@sha256:ab114161414219a49995238b7dde8576961625644d60136a74ef6b5dca4c1337
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/kubectl@sha256:7971bf339e9b949463c18e5bc5bfb7ef3d59d1aae5fb9a1b41e175ee305db1d4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/kubectl@sha256:24f3099c9b4ece4165bd5c89e6e6642e0baa4598071444d4fccac855a6f3e15b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/kubectl@sha256:1f9f964ac234972db8f6971c0f643803c6159679c1cfed3f077efa0a2b794e27