Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:70e3660eabfc672d0abb166c673f372433cebc1ab6a48b0fb281ed7ca1786c8f

Manifest digest:

sha256:12d2d09e39c092d7c04c48c779a6c356655ded12767ae10be7b48e26d3ea4e33

Size

157.41 MB

Last pushed

12 hours ago

Vulnerabilities

0
3
2
5
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:209520114f1592e6f0162e78f8657cdf1a221f44f448f3b90b2312991911c75e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:8bc30520524d8b04704f06c2e8539632e6aaf7f91d5c0f733c4b0f33cc52e973
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:13971ff11ff0052bdbbd2b255209c9dbd94127f76b519aedbffe8e24c29482d5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:5345c126c8040affe36589efafb281dec5126099e7d3be6df61cf9289ee7d65b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:34c9c203f2a1e6ab312a8f1aa63abe83de7853dba02b173aa580ed64a9204039
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:a1157f7a23dca342964442a3a36f6abdff875ef71801c9ed0d6796fd0765d72e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:7bc7dd5bbabf1f810d44353c63a0acec1f557593a61e3375bff6956db794df03
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:7efec0446a722d9b3da2417dbb7dd4443a5891f0f5ab93a7519dab6a82aa1b6b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:853a936063b9468e2fc6028897e2dd6e414bfa7212bf4750285b11a9a9375244
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:b4231e682eff8e132409b39da254d5a57ec00ad75716b2a82c9e3288007fb34d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:b7996cbb708ede6b134d31614e07a01847f649a472274dfbb6543ab30bf9cc2b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:731642f2b88bf10bad3ed1a535d4c7e632fe4fd526a5ab594ea4022d91dbc02d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:74d69a5dfd21c719509cbb021755e6d3f27940390e305e88c8b76556a70c68e4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:2c2e69e9efe15685b94f72d2febe864c0dd8564e4109b5dead6b757f240ede57
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:5275f88c25df1eb9e621486203ac96238e0af5f85d5ee8297c57b4da0a0dac30