Sign inSign up
Perl

dhi.io/perl

Perl 5.44.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.44, 5.44-debian, 5.44-debian13, 5.44.0, 5.44.0-debian, 5.44.0-debian13

Index digest:

sha256:df0ec5470739b660ab851436fb5958f5b838104362e34546cc7bc5c1a51056bc

Manifest digest:

sha256:094cd344e89a6d47c578ba926889043df24a5e6f88685775aa183a7769588c10

Size

22.93 MB

Last pushed

2 hours ago

Vulnerabilities

0
1
0
7
0

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:404e2b4688175194fd04f7d228db399afd7b3c1927bcbbac55572deb0bd7f17c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:ce36710f7db575c6a907a6e6271f34fd924e3df0538209d9357976cad1dc258d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:a744539ca93aab24e5f8e771a5ec0c9d44a2cedd3a8d95262eb3ea4586eacdc2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:f317b68dd24f0556c0eac080bf856fa56908403bfa2f0570bb2d20d597e25b48
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:1f13b3d5941cd7c3ce982f8e97fb480f6b4fe63011c695bab38ebda200c85deb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:108033e186940a5647d60142c31776cf4a4d81500703734b144a546c9d64138f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:085f3b3085ac38ba847dc623f08ed1ce12d5750535705408e32bd55ce366d67b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:234b0c9bc6c67d21d9c49e6d438e345f5740a8ea1bd07e9642fea6deda707637
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:e7ce17f06ed9fdb67f91f2dd6e4be99932028f17993756656debcc9f12ce26f9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:a9cf02f0ed9dee7f7931c0499649cc8a9803c48f3134b9cd642438e8dbc78dd5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:d42bfa4e0100aa1f799c4a9aeca3bc896b428357b2f1b2e148c3ad2152b4c526
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:200381c6c6ed3b89eca0af8dd8e6e9ca175914d6c73ce32cc652f18002ace3d8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:d6c16a36ef4b1cf2d977bf3f461a3a39b29c3162df393dee599ca3a497240390
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:b9fdd566078df0d3c17bf3052a8b4662ec81205ef8d232e1762164907903c0a7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:391c922b313b11c9a084e7ea5e9be3e24446142339ee1e7d8f73b115ab82db70