Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips, 8-debian13-fips, 8-fips, 8.4-debian-fips, 8.4-debian13-fips, 8.4-fips, 8.4.11-debian-fips, 8.4.11-debian13-fips, 8.4.11-fips

Index digest:

sha256:02103ff3c818a51bdafcb87dc51498bd9a6710d45b44696d585d9339f23c6ab2

Manifest digest:

sha256:7caa66531b03d7ba8a1ca0e2e642ffecfe39ed0944e8a2810d6eecd3d3c54013

Size

76.77 MB

Last pushed

13 hours ago

Vulnerabilities

2
4
0
1
1

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:0efbd9b79ec6cac95f3592d5b826587327dd0d1e237e957de817ab2ae491c19e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:1b6f42c33d9c55523f3fe0c63d7855d528fda6aa8dbfa9666ad8e712f16b6154
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:4154e4775779c0d188027704877281fa812bd30e8c148854c969c2312d6b500e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:65ca7a449b40b69cf71abaddb124def67d40c3947917f4353193f6860597790e
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:a6cefb5df621166bd6e33ddc962426ed5a5ef49bd1c8237377f62772a726260c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:717bd131854210f4183d5fa185617a66620c1f834b54f0b9d5008e656eabd3fa
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:9ad8165d80043ea2d65a53bc6cd2fd28351108624d7ad84d85cb8bab801034d2
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:2ca97ef94f3b4d215e64a717e99a6de9ca2f23c39bab961523708ffc9abd44b3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:9707922ea1c3e3cb59f2a3482b195ee2771f890060a991851bd392fd76fb6cfb
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:23616c88d01700d737abf1e029b0d91f734bbd2bc57c2c93d5c111dfb7900c20
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:70fbac36b6ab1c4baa8d48f4fae032d7edf68aa7244b7d9f41d4ffd342361942
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:832565a2dd51403858b5d03150faa0febfe449d5f3edd33c66901c4322aa6dd2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:b47ef140a2fbebfb6cb7d79c30bd6d9b9edbc684bf9dd942ddad2466a8d2f907
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:658c110a30443bd5c872429ccc98ddc4d3b6041dc4dec12bb3590d87ca1e60c3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:3665367dcac96c3f22a65b5bd9fe3798741dd5c0cd284de51f589941b29c937f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:6a3295cc1253f770b20cb287e676afb5ce31fa9b6a967bc605cdc7533f1e5bca
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:5157b3615f7c74a369adf3fdb9daf984ca6d778e09ed1a03f7cf1da78eb2b1c4