Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9-debian-dev, 2.13-cuda12.6-cudnn9-debian13-dev, 2.13-cuda12.6-cudnn9-dev, 2.13.0-cuda12.6-cudnn9-debian-dev, 2.13.0-cuda12.6-cudnn9-debian13-dev, 2.13.0-cuda12.6-cudnn9-dev

Index digest:

sha256:010682110f1895913466ca722d96a428a1ca3f5503c6f08d6a601ffc762cffeb

Manifest digest:

sha256:4b9069e092ab8ea24736e666d2e781ef75664c410e17d0827fa2e46d22194abd

Size

4.47 GB

Last pushed

19 hours ago

Vulnerabilities

0
4
4
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:8ef9be63300cc91e81ffaa0c3e389e0b873dda6d4bc4837b6328fc3b2ff10367
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:ada1fdeb40ee54b28c37ebbd51122abeb791518be978ceb05431f7b72a807906
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:0e3a104d6023d215d18994e90a59d0debe64ef9a8921ec90d2f2a2b118a1cf4d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:d3f86ded5276e57a2c5a3d264be04c2cc4da95e3245736a48bcfc676850d36b0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:2447f408602464995998cc88a455b386f1aab31198edca7667bd8b920b490efc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:1d3aa26f63e890601e7b590d258f7e1783dfc8d7799d1f43f8c2b46239ddf51e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:52f773e21da03fe5d9c8cebdaf16c194e1c4ffe5b1f66b2755bb2c84dadb39db
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:32a63949ecf75ee27e2dea7a2d90f3064ad9d40d87b297a1128765f07446f149
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:0bd5dc934870758fbab07b2e2c3b982186157240d8b7ce70be919596c298b535
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:c52020b34bfaaaf2f6d136e5bac6c11ab3bad52cae926f2b556f7a2f32c38106
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:1871d7f1b56f78c6000e635a166d805993a30df9bb15169ca130b805a80c6057
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:4345048214517ea99fcd02acd4778469479dd85a50482fb66b0c549c9b3ef096
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:68a680b325f7e8d13d0aebcf4c59ed62588809a0986bbce64e6e01d2662db208
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:9f2306b9130091ea6b2cf946ddd07d9c6860865b584ac74c79617bdd9ce6fcc1