Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:574124dc9263e5b405c11edc8f05a7bd307e9b7f78663d5336ac6d6d61902668

Manifest digest:

sha256:ec6b38a8bf73895d3d95334489ee1a5bdfdd729bff6923363ad0dc8c7181fc0b

Size

157.44 MB

Last pushed

13 hours ago

Vulnerabilities

2
6
2
7
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:387c21e86dd08f27b57839aabb4aff08bb9ad02c6be3ae8bc764b0ff4cd9d909
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:277831a0c1964816a8eaa6dff2575815fa0fb3e36bf168d28a5dafcf0fc881f7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:9cdbe23c60095909bf822b799e3ebca6f71e646fdc29694f2f6267d81463bbf3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:0db1128cd03bfc98047383369f302bb04d86741a57a62646ceb60c78ecde1ac8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:ed75652960d92de259c55fc45b4a3c9571c484adde60fc9cdf3c072fd7f63781
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:5dc92bd844ba4fbbe7dbe6dbea33b965d6e8aa0ae49577f13ecae6e5f3037103
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:ebc35fcf8f5194291dd5ed4fc3e5d36e29473f24dc31d9d37c7bce3b50ed910a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:02a255c70177e850cb86d81b5784eee28b416436780856cce392412e837a4f32
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:2b38509534d2799c6caa9f773e91b662ca0b18e08243be10e3adf6d7dccd770e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:7a65fab9e207f043b34189fddea5e307014b2d9d9f2b535dae2930fe540a43fc
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:90fd2a1d00c56764440d210254440a46b97e9bcacf60a9edd8ab3fdd96daaa71
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:36afaf8199395eea8fcc7255d6245dd70fdf915b126fdf470534166ae397c097
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:92c88cc7913d2e54a74802e1a6e7de46d2995b2af2688ce00816a741bfbee6a7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:0e6bee6afd5a46faab16aefaa1b8d96a9282167bfab6f7720d2961b21d877bca
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:b511944b725a5aa06d9448a4a99bf40c4c4c40c57771e5b50f01546a7ebcd8e3