Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.45 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.45-debian-php-fpm-fips-dev, 1.45-debian13-php-fpm-fips-dev, 1.45-php-fpm-fips-dev, 1.45.4-debian-php-fpm-fips-dev, 1.45.4-debian13-php-fpm-fips-dev, 1.45.4-php-fpm-fips-dev

Index digest:

sha256:20072f6993ecb01179c53969a9ef62a72f5e88fd34cd240a4061ee4438960795

Manifest digest:

sha256:1c6bb9db1a0ad072c6260e4ee38918bd5e5be2bc0868611e88f3f143500a3eef

Size

146.84 MB

Last pushed

15 hours ago

Vulnerabilities

0
1
3
14
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:7240ab1b9b93cc043324abf91944972d4fdf6704550e795328524891214d44df
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:a88b254199e865eb1c6e9a2a2fb20ceb043785c20a347029fceaa22a6fbffa06
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:9e3d7b94542b127a10c5576595aab0788e891c380dbea66298c823a2f3fb4ba4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:07ee727d2bc8caa2e1862acc61cda250ac6905e3d050be9bb83dd5532857369d
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:712d68a8927eed596d8cd1978c6d53256d013716d16200a28e0a0e200f82534d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:b7b5765f2beb4d3b08da307ce6fd3f911e80463dd6d6d1004c8931febbf30d44
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:6cba03df5df5354356d53fcdbfb4c141ee982a0d7da0fc3f32724415b81ff76b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:46dde456c86bd9126e995cdb212f1ed5d60df43a1b497d273bf48b7d4d4e48a6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:2f60364e5de4288402390086594b00f04f15e70185379afb61a96cda8ca7372c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:09f2da96e40595ce3850deebe5eda005ebd768adefe1d3a60ab0746ead595a4e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:ebb00208322c261a290d80a1a697d9e14f4aa611da81d8fa295516464e433f80
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:43d273db74443a40a252a787e1e0a3cdb1430e90e1980ec3a07cb3d1863f7b68
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:68ab04841f5826c227a846707f383235b35b82983af1a915d4c4b39ec6925a56
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:eb19c371ee2327aff8ec79e598dd720ad3cce5a1c418d57acad1810b3b03dcaa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:f8bd650739ac73a34c1418fbf4137aab3102fa597a5f950293300dfdc98e9e9f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:0ca6bec5369b50c575ecda4eef996f6b2e14b450c33ce91c314e5a55f7e47dc1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:864a90da828ca29a3a832d41d576412f83481ce3ceb1dfb0e4816ac951594def