Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.13.x

CIS
linux/amd64
debian 13
Tags:

2.13-cuda12.6-cudnn9, 2.13-cuda12.6-cudnn9-debian, 2.13-cuda12.6-cudnn9-debian13, 2.13.0-cuda12.6-cudnn9, 2.13.0-cuda12.6-cudnn9-debian, 2.13.0-cuda12.6-cudnn9-debian13

Index digest:

sha256:c3d58babcfdeb76e573d2c8d6b1ae89c176b8fe0b462f81f654d5c0723cbf57f

Manifest digest:

sha256:c4d04d0492ed6fda5cf9d882b5cdf8d6d4cda68d8a3a7cfba7f953a9ff06ffb1

Size

2.39 GB

Last pushed

3 days ago

Vulnerabilities

0
1
3
1
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.13-cuda12.6-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.13-cuda12.6-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:e967df8fa6c4353d3924460897b2e1c8a9d56b31d1460f091fad20d6aff6e381
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:5feddbabf5a871b54ff97eadd6a85a6cd6764d48710cadeb7b2e53bf67158ddb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:8178c40ba2c5711e2127d48fc3aea19f363a2eb8c7e0beb4597931062cfc73e2
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:06ab83da326a45d6dcc98b3e8b43bed554e1ebfb0b77bb2ddbb49ac2fc45a3e9
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:dfcac05ab6e2d7bc67bb691d6126593ac3cf9c66e4bc552ec484f05c0423f130
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:0bdc7526bd506af4018a05d19428792c3d252671863c185a9bdadc64adb77c63
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:2f884726533f3cb7f34cdc52edc8f44deb28ff0d8f14d5d20db09dc2ad537d6b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:d501c1dfe787fbcea2bd463e9a56e8535c02e5fd8d185fbe8628ac6af03f8b3f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:cb61b6f4b0ee64d56a6a403abd3de6043efe40326d03fb89534bdeb88d35678c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:a6fd4032e2603f02017b51b711fd7e86374af15ccd7dde157d6c172d7cee01ef
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:9022ff5fdb687fb7cda49fbaf84f9c62f6cd39aa091d5265d9737250d3721c60
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:405ebef985091ac436c6455f8663dfcf4e344269b51d162f12b006baf4cf0add
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:448fe9f251835588d9cf549456556a19de7aea43878d8d6c04a8afb606ce712c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:d0f0ae3c4babf0a69a9b8449f95860b22aaaf07a84a17a40fb7446f0fa4b888e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:38a54928d85160e80a798dbd11c61480cb6e66d871144395dee85f0371cb0519