Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9, 2.13-cuda12.6-cudnn9-debian, 2.13-cuda12.6-cudnn9-debian13, 2.13.0-cuda12.6-cudnn9, 2.13.0-cuda12.6-cudnn9-debian, 2.13.0-cuda12.6-cudnn9-debian13

Index digest:

sha256:d4fb8108030600d444ba71e12b87dcc65e57777b9913fe34be30b2f10e7df39b

Manifest digest:

sha256:b575c9484dff1c323af79bc0e5e4a63cd7b799914b8f8964d45a5be4492d4fc6

Size

2.39 GB

Last pushed

18 hours ago

Vulnerabilities

0
2
5
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:139010e9ba2958064a597fc95f06f6296ef81d8887cc772ad72dba2e93b719a5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:9fc45c8c14d033acabd2ffd0096e52d308869ca3c6a4c460cab3d0472ddb67f4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:b9155428d532664cb94b05e74bc3c77a3fdab6e1c02ec82db313e144799a3236
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:aab2ac5814aba8900a8477241dd5f7630a0d2bf9273aaf7de9148464aa931599
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:d042b84b5152e059e5e5415cc0c57882e6f414456672f088d436465f7a8b7dcb
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:0719dcd4abfaa7e846da99e7460f72d35fc64f90558d604bc4662522b6b8d276
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:48276591e5c8ea5bcde6600ffc6faa8034a97a45d8353dabc8b56ea3fdf2e600
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:e8e2fc1c5754ada029590e97869000e5d4ae5a55b4720220eeb10e6da6f05f29
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:9c116a85e8afe4350488d34decd855fc9ffa02a8d04718052807a0a05747b62f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:204b0b30bb5bbeee2d13079325f403b7138c139ab9e0c034269bc4dab8865378
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:041cafd98879a186376aa24dc22b012e74b0c105080fc0314b3c8223faa13ea0
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:7005247bccbda6498116ad4b3d8799889d7bb55a0c800927931d81baf8f6e940
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:a1ffb7eadada3cfac8a09ea541a3cab436c2a3fc1cd648ce3904ed9edde03ec9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:4c99a2ae2ae701800d8a0222aa14c5422f5344875524c995eed8fa8160c4f141
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:8a640977245fcb8a66eaa786ded5de0b840940f70b3bb3c26550757bf3186aaf