Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9-debian-dev, 2.13-cuda12.6-cudnn9-debian13-dev, 2.13-cuda12.6-cudnn9-dev, 2.13.0-cuda12.6-cudnn9-debian-dev, 2.13.0-cuda12.6-cudnn9-debian13-dev, 2.13.0-cuda12.6-cudnn9-dev

Index digest:

sha256:19bcb77a35d5a63592c2105d64ba7a79d8454b27d1cef76874e921f0dc37e70a

Manifest digest:

sha256:40edba5a96f1b5c812012ce119306f874706cb600b534f99fe00fa13267e44c6

Size

4.47 GB

Last pushed

7 hours ago

Vulnerabilities

0
4
7
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:45a94cd520abcb3fba7271b940eb1bf00c7099dc5f5638de6b18851ba283dc73
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:f70798c9e29580a03b456f38ecacd42770935af2b0a91d6143a6681bf4f6936e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:a19b6a0d69e85bc68855aa7974ac63a4f4eac6ad07a4c263aa58055ec8f0edb9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:8f7cf2fc9d8926e7bfe8d73a4a25ffd587bb2626c19cc1c18954e6a162b92cf3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:8b0b4ba68926c78aebdfc6e68284b3435d955bf5e87e8a862df077b580fb39c6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:20d476e8c4395c0aff8b5e419065550ec6b4b309b2fb2a8dcba799280c775d3e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:9f614688e9186a112c1e13ff04bb1c96b1d85754e23726e3d5785c0dfef1627d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:b05c925f163afbaf8453a1b1fd1dc72d13873da6a665c692f48c4933e9ab93da
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:79568f26bbf30e8e5c79e3ae70692f1bb023bf097786b5b31f38535b60ac59bb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:6b0975fc01c9f86abf064eb868b33904156e9e0853060f5d7e77dabb61c51eae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:92369522c3a8d04b0e5065350d40b411b8d3051b5da54a1a5354e87fc215d4e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:43fe4a62d5525ab28a4c9f8b35450045c34649b60004545c22f939c3bfcfa366
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:7f2eda56279c5ed1bf4acf3ef8d9464db122a0764c3b8d9e039155100d034122
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:1d7083574941b5121cae845f4cd362e9dd4d1cd0d505293db9aeb70dd59521a6