Sign inSign up
MariaDB

dhi.io/mariadb

MariaDB Server 11.8.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

11-debian-fips-dev, 11-debian13-fips-dev, 11-fips-dev, 11.8-debian-fips-dev, 11.8-debian13-fips-dev, 11.8-fips-dev, 11.8.9-debian-fips-dev, 11.8.9-debian13-fips-dev, 11.8.9-fips-dev

Index digest:

sha256:d7a4427303acf601303196ed097c377ceb0eb8fd70238fd9ce0653f850669b76

Manifest digest:

sha256:94888ec7d658ea39dea96a7a5aa599ce3aeb9bedee7da84a4e30b24dcebd5f8c

Size

103.71 MB

Last pushed

13 hours ago

Vulnerabilities

2
4
1
2
1

Support

Active until Jun 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mariadb:11-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mariadb:11-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mariadb@sha256:63860b379f1c8ab6445c97a19f28020c1c060a34e7cd2fe8a501db06b51a9557
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mariadb@sha256:e0ee0b3c6a9a6adf9981d4225c8e4816054b1cc3fed94313081ba193eed23789
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mariadb@sha256:dc25dd7d23556f8031949ad63183c3f263275bf9ecfab99ceab03b1f3fb56b6a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mariadb@sha256:1cbdd61a3712050537e91f9296c366568daaad7a6715ef62298b69ca15ee3738
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mariadb@sha256:b765f39d435ac368e7d3714f1eff474fef2ccbf27d4b0eae76903a791a5ac359
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mariadb@sha256:5d920dae79f017b029b87d10e556939d0bb142b41a7f6cacdcce590c674c7835
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mariadb@sha256:89f8b0ae7d07245b128feb6ff06449f01112af3f1135d3182332d2b7bd9391a7
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mariadb@sha256:86e8efdcdeeedb15d89db9c265f6ca5c2922d38002ac25530db41ee8443489ca
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mariadb@sha256:b8a22cc4e0af5d0942b8a89c258da660d736757407f5710672421e025dd3cc2b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mariadb@sha256:17da7da6e4f133fa97e674d3a5a72f33c0031acf5dce1ea3c56f873c1f1a617b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mariadb@sha256:5a310349123140e08750fd1e02aa8c07d405b0cdf1809b07c8f70889927aedc9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mariadb@sha256:1cc6fd4bd8219a562fed346cbf557ef66bec8d7d2796b7d83f4758c59b1dda3c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mariadb@sha256:8244db4f94c50b74d0df939c9c091841cbcc7dad0676ef2d1fa7fd1fbdbeedb1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mariadb@sha256:0347c10426ac90304453ac709800b856e9bad70993b64e8668c3d299bda502c1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mariadb@sha256:25850fedd06749f284d00e73062f67e796e87831d5fb9f946b6cbdad361e25e5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mariadb@sha256:6f9402457b0803d519651f29e01e3c1c89f5af5a0cdc35894ca805a5d4704d36
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mariadb@sha256:b7851c98d9db40d3989931395da41f91e4450e4d0e25fa13767d98d397ca57dc