Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda12.8-cudnn9, 2.11-cuda12.8-cudnn9-debian, 2.11-cuda12.8-cudnn9-debian13, 2.11.0-cuda12.8-cudnn9, 2.11.0-cuda12.8-cudnn9-debian, 2.11.0-cuda12.8-cudnn9-debian13

Index digest:

sha256:6adaa02e20319b09c1d259b36e04cacbad788ccd35d8aa020bdf3c46ba128d0b

Manifest digest:

sha256:dd77a5fe4efe8694f3272905f2230a291bb54e8298b4e41e7ba8008446bacb80

Size

2.68 GB

Last pushed

22 hours ago

Vulnerabilities

0
2
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda12.8-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda12.8-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:e3df832989a6ae604f62d60c52ca8519cf0eafcda3ceb8abedfdae88fe3c3688
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:6b9e0630348309a93b3b960b99f82254e8569b6f1f07792fb9002bb73fb09a28
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:7853c02e623ea14c7ea42359e99e38a69a8147b4b0794afdd40bdeb19c71b9b9
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:b500465feb34126debd81484d0cf3508d1fc40f1ade28166b6ca77cc5fd10b1a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:6531fd7532d85b4306259832efa959cea87665ee639d7185d70c021276a3a4ea
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:fd4f1d23c2d7d3616f88f4b503939a86da9d9f3ec28a327535c1ee0ff02cb532
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:ff0e896a5db0a4d9e768e29b4731d80f6dbd60563afa51ea09a7a025373000bd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:f82f334fccaeae0cc8b920ac5262d777b8e275d083e77a7c49418774fab426c5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:c828ffbdc92ab099b7d1c4ce3bab9b3d8589e20ba5a04b9b3622aaf22d88a960
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:47c0cdf48fc84776aaedc0779974d4e7257364ead0ff9569965ca57643a202a4
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:25d1e74e3c1e1dd8aa3c32e8a355fa47f5b0b7756609fde27c5f54b823901529
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a89ed005cf9f155ec7e2f15ee7031fda1e768e2afd544290cfb88725e8e63fc8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:44a12c4c55dfdabc1f11be03a31cd4e84761d521fb42c24fc1617f49ca0e90ca
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:8687950f17132f53c60c9e553ce96e23aa83fd1a47b3b78809e41d7659b649bf
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:8a59942d0d3fcc034dbb1ecf6f9aaaeefd0cb95b2826d3d627e2949c88f7681b