Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9-debian-dev, 2.11-cuda12.8-cudnn9-debian13-dev, 2.11-cuda12.8-cudnn9-dev, 2.11.0-cuda12.8-cudnn9-debian-dev, 2.11.0-cuda12.8-cudnn9-debian13-dev, 2.11.0-cuda12.8-cudnn9-dev

Index digest:

sha256:26222f4f05138de6fa4d6691b590ec7d91a3c9c2b303c652225ddfd3b57b6fb8

Manifest digest:

sha256:db12f1048b49bad598db1d5ad72b9a32d068f84ff0eb26c859efe985eba555da

Size

5.50 GB

Last pushed

18 hours ago

Vulnerabilities

0
3
7
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:03c07797d53277075d6d4bbc9efc2b711fbc21c734f3617d4c05c375356fcdac
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:159dc659dbefd37e860aac9d219cf9ba18a48d30f62dc277b3f946139b89479f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:3ac68be680bca17dd801aae1c181106ba6f399bdca99030d2903b3ce78db0065
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:ce32980c2c62d38a6c5529301aab9f24213cfd9c541fa3401eafc13381b0cefb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:060ef66248ecf2a281ecdca8cf237ef08dc64ab3c3a2265f358a24db22456332
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:f981d087a6c4ae582d1ee0741f433e468ea544b6e4c85502a07a53bb954e3e6b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:a0db253a06f5cc3ca3f49a440d2193252b95b316dfc9dacccef63839fe20f23a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:fdc3d6a0a5c851aac8f95e73aea14142c097672320282a863f2f394be97a2e1b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:0c7fb59c4b701c4f44507c26e5054b18d2dbd8e8544e175bda1f53871adccb51
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:2e481c498403d3d744c817eda138f30afdf8ede492523f6a6a0a216a8b4d743e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:008ebbc60e418ee4f130ce8ed9e81c43c82ac1531e93276d7319c3e83de5e028
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a4fccfc9fe84866156c06c7afcd5ab11123e2c81d21874e2ebfbd2648fb1191d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:02d1f0280b4f14e5eb8ef20db0dff5f408aebc4ca1493da3673da09ef7007c88
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:6a9f2d45ea07d11216d9a421c8903dc866ac6de6312514a19291b8ca153e159a