Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.45 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.45-debian-php-fpm-fips-dev, 1.45-debian13-php-fpm-fips-dev, 1.45-php-fpm-fips-dev, 1.45.4-debian-php-fpm-fips-dev, 1.45.4-debian13-php-fpm-fips-dev, 1.45.4-php-fpm-fips-dev

Index digest:

sha256:738bafed89966b8f0c1dbec0f1029abf580c3a24a8678fffb83f8fe0f8ef7d53

Manifest digest:

sha256:9b6d53938dbd3100e9d0f6832789da90a87016e11b2c4861e7cbf6fa3a0a03ae

Size

146.86 MB

Last pushed

23 hours ago

Vulnerabilities

0
2
2
5
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1.45-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:52c50742d93e4a2a955bc351730f6047d875a60d0679bc8fc154e0c540120abb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:82afcb8d62e7eaffa5c8f076898fa711ad84a5b256090d3222a9e4cc8e10217b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:f819fda042c6bf7e8c1c2e39adc383f4eefc6f97e3b0aa682f11e4da87907d89
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:361b555f8dc978353b6d71b1b314006dd0628a975b321ef249339023e57fe477
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:efe6b509e4471e863f557e36f52ff7e84f217bff7f6e90fb62fca43159e60247
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:37927d7721a0ffc60b1ce537eb34e1054d5c0f2b6a40b265720b536d51623501
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:1a4af331669bde4dd4955022a83602d54238fa6344a581cf96f9412f6ece760a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:c75bc773dee8a8afe8ef7977ac70c4545d3fb794c4c20ba9f8465c8d3236ed29
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:0d8d4838048cb683d6a12cd1a6998bf8de907a10f215bfc07d8f0fb512807fb0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:71614b72783d184992d383f88cb1beb0ebf85a385acde50b373ea9e0acbb9bdb
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:ae6d906c6e1e6f5e1c87f7c8a5dcb9186ce999177b8c2ead2945aeb66ad3e5f6
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:1edbc63f7dc89d315fb297fe0f805936a91c82e5abcb811d4f1e619793d0c5cb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:d6aee5a66c22b5960437f74381dbb22731e3f7d6ee836d81ba6b4ccaf75479e0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:1d7497db20c65543b356a9bafb610c90a5ac1e811010f398c6f8aec8b9931082
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:25ed281db16db6061c0c7301958b580bc06ceddcf1e92f99a3dccc0b38cd106a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:14615b82a344eb26f33063aff2e6bf113e08265530ec79fb72b80f5d275c697b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:6c77516c383c5195d8bba40f37d3856a8c3741d9610bb834fa8be70eb45bce26