Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-php-fpm-fips-dev, 1-debian13-php-fpm-fips-dev, 1-php-fpm-fips-dev, 1.46-debian-php-fpm-fips-dev, 1.46-debian13-php-fpm-fips-dev, 1.46-php-fpm-fips-dev, 1.46.0-debian-php-fpm-fips-dev, 1.46.0-debian13-php-fpm-fips-dev, 1.46.0-php-fpm-fips-dev

Index digest:

sha256:e6e1ee5b95af3064d1d9c72782b35cdc158a8cfc37382f653332b6db235bd262

Manifest digest:

sha256:ca773c66a8811083bfb0f7297ca1301f262c5d1cca0335b739db50b7088b5f21

Size

158.24 MB

Last pushed

19 hours ago

Vulnerabilities

1
7
3
7
2

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:2f47441014183a48d9813c1d71595cb6eda4b29713a83b87e1a2d06c03bfbd82
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:047de1fda34cd5f5bd045205e80d1e21e430d2dcade90c573b1dccbfb440d724
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:5c374023378db9f85a860d3e32bad8f06effa2b11af69012b967a1af3f531fda
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:ad61221b897d2fe6338952f52c225f38563a50f351045e95417a3b5d7a119bb0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:aee63377c1e7767c464d0ca12ce3e185a3fa5eeb29cb6c14456122b25ffc8487
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:a877e4e2b1341c74e92651a943e0aa617a7d553cfdcc3f6e818222972e70e08c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:2c88f1ad6f6eb3f19708bc6c588a30beb70fe9e6b03f54b93142aa672372bb27
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:95bad4048b6efc560bc69a0646a1b45562abcdc97dbd968db5adc7e6fa184100
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:7f9eb4089b0695db065d6f06705fb2e96ba98c27445614d2ace165cbdc7988d0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:7e13c6cadcbbedc4de41c5c9b249d0de3704ccc3fc6995f66b2ff02adc7bb452
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:bcd6edee3e63fdf8b3ea2195246824e7760baf6843a995a7877ef96bb6054fc3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:c527250b5c75cb65d50663bc7b75efe9255947bb1c912428bffbece1a246cc89
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:cfbdcb0b4c92582bfb587527a5d9473c570ef5ec7060d8419f86fb8f994f5559
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:3a8c5e1ebb9e3a830748eb41a678af5e50dab83a9d625e9553785be1e4fc567d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:79c86d8517c6027f74daa0d3f8f18e6e4f6d5bc20f0c1405380806801294d8f4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:db5e495e2ea9a564eee1d1f0950fe577172597486c36d97b0a0a1b472b6c7f85
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:726db728757faa07213aff2df0b8e7c52a787bb10888e166519b567e680e1c59