Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.4-debian-fips-dev, 8.4-debian13-fips-dev, 8.4-fips-dev, 8.4.11-debian-fips-dev, 8.4.11-debian13-fips-dev, 8.4.11-fips-dev

Index digest:

sha256:7d088097fc175096d9aa2fd59672644374d6095af427b5dccc4307df5b1c5d39

Manifest digest:

sha256:d867ae94b5da23254b34b1d83d304f1369a15ecccb51049a0cac41f5c18a9f21

Size

89.54 MB

Last pushed

2 hours ago

Vulnerabilities

4
13
2
2
4

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:b9bc40adaaa41cf8941cc4063300372419abeffe8222318d23c35f29c226082f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:0ed6572f708b34d57939bdd4d0b435a9faa1bf719a08e0088e6a80721a37728f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:ff0ae8426a7651f703d769b94c720b279e23e7b5de45b147dadb62de895e0523
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:8dea8b7e422dd6c424ddd5a7589fe511ba5d68513a74f8da59d4c031c30b3f41
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:f8b60e75d398f4d040373e97002b08476a93ca1f4700989b54f10b5e9c64b157
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:950b11ae5d01716bfedd12bf36d50f47699a98ebf23dcd6b56f2f2e4a8f13a8e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:94cb5ae94e8abfb48c133a4827c01bf3ca4aa757516accdec493197cdf784a86
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:12451a7101acf24e79f5b7e059a36a2d54fc4cc6bcd7c91b1a35220462733eb7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:9520c547d428b7706ddcd08973179380b8c9b31b822b4884daad5d8d52244244
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:687f1c836b94048c473fc462f189ddb4abf30ee69f05474080251b45041af9e7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:059bb38765db307c7284800d984dab67b4d87bbe2b0f96ba214fe333b4bf4170
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:4f0e77f6e2e21c08a20d2edc7c85ac1d80cbc0f17e25ebdea2cd72fcc5362505
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:1257f74243e4199b33e13412b5867aa249321be667d76359f221852fe54eef2b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:b6e58bdc17fa93e5392ec4b15c05fe3f98e3c5c12127993039865ff6286ec28d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:98e7b965b678345661bb53197ffa7eb3f10ddd68a40a98979f31311c8f3296b9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:561d8af57beb2996bbc2ccd746cb364d75054d736fa0dd25919e18f73c1e3646
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:3930d48839e98ef3877d111e8157708a71e5814db2117d7e24b776bb117182dc