Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:a8c08cbc368973a64146340b1654d63a96e0e357a769702d0f93f9c1e79fe0ea

Manifest digest:

sha256:3b067db94b4f3cb2d8a1644fb6752a6b6f346fb43bd495c22a52ff2c1eea6082

Size

157.38 MB

Last pushed

1 day ago

Vulnerabilities

0
0
2
20
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:46788f134e971170cd8e0a984d55ed34f1b7fa1b9af63571481f8de9610325bd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:572da3ac485e3ccdfbb8065c059df65cd49b25c47a0914cdb34e650c8f3f6452
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:75b7abc84067f64b87c8088a481ac72933fc41fd366d63a6ba21872046eae387
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:287ab8c80dc84c4ffc76ddacb4ca154b076b099501c229c43b35a905a1899530
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:3d7b9b84693c4926e2aae8422f335353585c056a5b60044a6619c694de22f8bb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:5cdcaf407cf19538abb52ced5731c668c01bccd8141ff810aab703eb6e142096
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:39de8a758c8536563a2f3bb61deafb14ed070998b2e06f442dfad3eeaa1e0154
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:52fc826a31259faa3332d067980708093a06f2fb8fa6acaf5e32846f421104bd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:74aed0874a2f9af4d00640631a284f4e3f50250679e56318c0619d2a7f0eda13
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:27d3a09094dd26d82fb15b8c1c7550cc98344cbb31dd7ed11f8c83632fa6935b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:d57ed255921a7d0311301ff1e12d4ba0e9def3a192d3c94cfff41054213e7bc5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:cd054cd1b66b340ed6f747885f97cd0f625e7336c0d0cf6031b062037defa35b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:ab69a6ad4aa4436f754e147e3d1d2121d4260e4368fbf0dd65ebf090a3dcea34
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:c697786c41223402ccee069fe999f4240cd9ab14d1c00286ca6d0801026c0efc
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:4ed3347cdfda9b6ff2f74b76c75c0ad57f2682f093a659185c043f93c66106c4