Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9-debian-dev, 2.13-cuda12.6-cudnn9-debian13-dev, 2.13-cuda12.6-cudnn9-dev, 2.13.0-cuda12.6-cudnn9-debian-dev, 2.13.0-cuda12.6-cudnn9-debian13-dev, 2.13.0-cuda12.6-cudnn9-dev

Index digest:

sha256:a3fc6785ef8df4de74bb77ae06713440828767f493e6d187a9793df623e1b583

Manifest digest:

sha256:955bf90bb48e9a4cad530e71d2782019d404422ff62077d0747aae07cf99a6b4

Size

4.47 GB

Last pushed

2 hours ago

Vulnerabilities

0
1
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:ccdfc5792a7cb0817c6027acb524778761fb887f278470deec083af424edf067
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:a89d0d44168d0bfee3956baaf7bdf3925f5a38ea27a9cd6522456e58350cbc77
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:9942d22c5bbcb056841c5b72f318cea6196ba690618578ec73f74050560f63a0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:e964224ab3946d22378a80a47a13667f9bcdf2883003ba5e5080daeb11037bbf
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:ba7aeec55c0b80914e6ada31c8f2c884ba30e266f7014f7f74e17e3f3f3af7bc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:9cbcdbfe39bdec316588ff1b06a2a409edf6574a5814b7efe6bdced3cac5c38f
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:d2385e4c20b87c0c9f8aeb0ceb15d57ef090cd6b44af31c92df0d07b038d2fa1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:5e48b5829cabd00d22c5e62a2406db56e147feb614f7c4c6d955c64c1cdf62de
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:190c9d449b0c2bfcb368c3a7d11ce3a003deafc59d7a7b7a0fd04b9c86b511f2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:928f67987e5e87beb2e92ba61aac0815687eb74815c10024d089c392694bb21f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:b5ccf453e1c672ce6add34e1c7bfd95b886284c6c1b68ae99604b65c6d01701f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:69bd13f7c58da3d0fbe2f425324b10cf998c25af0b85f3f99cbba80f7ffb303b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:57a8d94a157eb63d975e71d358ee13a442f875f96a5abcf44e559d41cb366d91
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:f57485f9e834a92fbf8a7df15ebeb992a5c90d954c42532e68266375233ebcd0