Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11.4-debian-fips-dev, 11.4-debian13-fips-dev, 11.4-fips-dev, 11.4.13-debian-fips-dev, 11.4.13-debian13-fips-dev, 11.4.13-fips-dev

Index digest:

sha256:fa44e54389e837a843fabeefd333b73dbb7f85d9deaf9628f495004b8ed702ce

Manifest digest:

sha256:13a70d3df995f092da59e4cd8c6df54174a5d248aaabb4306b8844211db60d4a

Size

104.04 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
3
0

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:fbfd8e49300daee9a4d26cfbd093f0a1ba646763c154f8e246edda26b8acf34e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:687c112c9cc381b8afc5a6a74f231fb6afe442154d0d5ac38cd325a5f0b8b88b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:4f7080bdd212e4e97d0f21e14d2517643aa36f195d44d8d565696a3e89fc54af
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:ca3582cc8f7b53f70f20fa6c167977c3a0f680b73f475fb231aa13f103d19088
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:9b9f7f2169ee82112952fe6f65d71da90de1a1379fe8ea048f7cb7daab7d4e8e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:575c6d9d4e39e01e03f7691c6db2cf431dafe49c8bf715c48bf2c1b08907aa20
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:bbc5b24febac9641d1b87703df42954405170bfee625a54ecc32337053c07ed2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:3d4ac6dfea246454779e0bed4b2c9ed63837137fc2a7ad079701119174e34376
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:98d43a8058735d1ac21e0133f2e54c714fa70bf7df4f9e94900f12cb16276c31
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:df5a6dd231f6a462dfb92a9bb7a0f7b04301ab562f1e469a5dbf6b0270d2cae6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:795b6f206228c4d52813bde08a3da8244b94cd2c7c7db9634a88dd0f753a50ec
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:050a0656905ee3a88f28de9b508e6c6ba00bffbbf5b5033d3a913b288ac18efb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:f7c847fb1da7296b5ea108d9c68043d4a0b6ba7df8b3c86ca17356be50493d5a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:af794504d75d388626df31aa9982d726a1e24c54110458e6a5e161f64c5f54cc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:708672bedf61d6833fb4df7e5bf46d69675dc7f1d136db1d49fe375bb801a4a6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:b517cb4fa01e0b6383a910113a7989fe09c732e3fdfd6ff640d42e9316c0d75d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:b8d9fb6eeb09d99478b66be9236ccbab8ca5728eed1f9528b35be4a7d30e9b18