Sign inSign up
Perl

dhi.io/perl

Perl 5.42.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

5-alpine-fips-dev, 5-alpine3.24-fips-dev, 5.42-alpine-fips-dev, 5.42-alpine3.24-fips-dev, 5.42.3-alpine-fips-dev, 5.42.3-alpine3.24-fips-dev

Index digest:

sha256:0b53664438b2b52ab1e5a1faaca53eba79c7dbe0cf19e60f9d7c12895c9cae58

Manifest digest:

sha256:b20eed2b80a2a6d9eaf94bc711907079d52d6210b3073c28aa0e4faee392713a

Size

77.24 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
4

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:25ee3af781ccd156df550c82a6cf1e31f4fcc580d1d626a244963b6d9d7ef748
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:3deff760a93d3c87dd4103e0db108f27c1d0ab84b8a6ee123a0a1c429d0798f1
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/perl@sha256:9b20ba6f518ac8ddc64ef9cf9431f42740dc093fca7c084a6bcf8298a933e984
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:8b01eee593fedc2eafd22c516d83fc395c8d569b5d22827357ec99c128ab4103
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/perl@sha256:47e8927b3ee9d5490542c7a7df678b53125524ede4f67b3bac8cca11aebd43fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:08b7deb0c18b65ce5592a7202a880ff69fa410e0f952a680b22aecb6092aa4c4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:29b203959d1a61875de05334b31af51911963f8b08bd50477f8a7392beb6e359
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:5ab05104f447e247605fb39f9e3dd457531e4f3e2067553cb1a282c05b329ea2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:39be36247e7a190e6654ca218f9cfb77a7552d46b9c689a442cfdcebb7564fc2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:50252d193afba8dcb1e8a6bdc13c4a814bed815082c61d465e452d7b488dc311
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:b850c35b49a51bbb2fc229fcf4f85a199ce56817d07399ec0ae4023113f2985b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:c39c2953c179f49caa9a82bb99891c603f884eddf53ecf65548c51b8c483345a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:232020e5e85caa530b475036a82a44c2127e05dff4a0a5a6d3a6f355fcaec35b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:0002fa9dd2b66a1d3d1e61e6382e490bc2043348b49e9011985c9251f935f3e8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:7ccb92774dde9f0ab9c6b81012f6a2172b95e9c38af473893158292eafa01469
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:97b9ca3fceec0954aa3c35567d6d51bb66af51a555dc4ee85e8ef87163019f6f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:a83a5a616e14abaa80cb3366bddfa99bdc5b2963607fa7a0d917137b1aea2121