Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11.4-debian-fips-dev, 11.4-debian13-fips-dev, 11.4-fips-dev, 11.4.13-debian-fips-dev, 11.4.13-debian13-fips-dev, 11.4.13-fips-dev

Index digest:

sha256:5442defa7b3cfad8259f0327f921fcc8e4bc5a75680971463c73233ad563f6df

Manifest digest:

sha256:c88bb75c587aca9cd1115a03871e44cead0da31a1da17b39602d253ca93063a2

Size

104.03 MB

Last pushed

7 hours ago

Vulnerabilities

2
4
1
2
1

Support

Active until May 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11.4-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11.4-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:b7407b1a05e18feddf2eec8cb7988c102a26d7db8f7f43f699835e3cacadcc06
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:18cb58301b9bbc1024dba8a413fea089fdb586c6f5db318bc33a86b0bcd81d90
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:fba20de6f71622c089038590b1d5f960e50f6caf5acee0eeacdce2c78fedb4fd
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:696c80efe9909e44f3a0fda04af85accd0da68f71f816d6c60041e62a20e84d9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:2fc468fc9b4f082f91995be46e1eb7288ccc5b4c6eb1ae59c264a1422605f5ba
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:3237383a73560d4d035dc8f43a4de32b9db541d9afa85174dc29498bb0fe8700
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:ea8c683c973e16e3913fef9184280a33f0251e93ed5b4fde9d3f0209522fd1e1
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:d02d81c0c6085ab84e46ca7d343ea1eece547e7dfed8276e4d13432b7cf7e3cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:fe41724bc346bac8969e0d1174b9f56d816589c5034c0cb624f433f0a9a8d4ec
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:80b4695a7c1735e72d3f27f07686937ba295673499df073fd01ca4230a447d2a
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:896a3a657e739d4c6c2739a54c9459cd93a66dc1e3cf272dbde3f6cfb32e71de
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:8af846a41c73c7da899c3d1a1df7c9223018e11410a3de9bb6120b9fab4e814a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:36e9cc03b869a18557075d3f15fc12d48ebb1313e695d02f30f6422e217999c1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:ea008b504330829a4e6ad897f01dba17e80ad0b963914129502c22eec19c897f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:f8c846e18c03d7cfc3189b6ea7839df5a21f8bb21e8fda2abe5b5426fda300e8
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:d52536a7d0e66cbcba7cb7d657398c51dfd975f335fbb8e02f6d4a4c8c251237
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:0264d4b493329cc276f54586c249bb2ad5414e409f02021cba4aebe36c78eb96