Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9, 2.11-cuda12.8-cudnn9-debian, 2.11-cuda12.8-cudnn9-debian13, 2.11.0-cuda12.8-cudnn9, 2.11.0-cuda12.8-cudnn9-debian, 2.11.0-cuda12.8-cudnn9-debian13

Index digest:

sha256:adc08021547db78886b763f67dbf16ea90a38e1e1d22affed0b5d3d6289ba716

Manifest digest:

sha256:8ec8786b83f5159c4e162e30dbf8e3eaf1eae392008e8701ff68a862e65e00d9

Size

2.68 GB

Last pushed

4 hours ago

Vulnerabilities

0
2
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:86212160da2c51f79d6a521a01b7550a58444256877b282864de4d98e910eb0c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:c2e3c552fbe135248eb1e8c3ab5f67766292d61f254fc21e471f795e5b4eb341
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:65fbfd17b305e36176725f5a7673985a64d14c2a52595c933b1724228fcfa642
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:dd79b6e150ed51d1b24499251139bf4517351c5a308051701e4ca15c980ecaa4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:925f1610e8a39ac137489be5cf619e96168617140fb9a224cb442fd6b1bb63cc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:dc21f51892f13fca94b370b24647cf870ac5b210e4e49fbc1a886bb49db323f6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:e58b91aa3d336af9289874d7849ce04ff4aecca1bf8ae4977ff45141ada6a53a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:611b7dd20f42936954ed4d67b541358dd08a1b318a85ef9533eac7a2d01e59d8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:0269f88fe3953d6e5d4b42f84430ba80c3600fcca16f64121ada9cfcbd5fe399
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:ee30889f4381270a7c09bd26b5c0588fde827de036612a7cf7c8e2152c2cb336
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:460658b7388d01a255a800c2fdfbd76a19ec5b593be5b7cd994e51129fcb350e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:b791d78e53ebc3834a2fb1ac074fc89efff95f023adae700a0d13f667353e6fb
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:f1f71c7e19585f73effad4d3b2e822ae6938c753b2394a97a025edd19f3c3028
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:727f82983a54d997616b5e8e41b7d9078168c1a2e32d2bd0b6a56e84958e936e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:56e7cda988cc4a5b0b9773129bc627be6664082833b770836b482a53e27820c6