Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:110998364de672fb72603c4bd713400c18850e52c502e17132d2c2ed06845720

Manifest digest:

sha256:ce3b8ed8d0dc1cc103d4a0bd374624a9b98f488e657661d614cc1487da6edf68

Size

3.59 GB

Last pushed

10 hours ago

Vulnerabilities

0
1
3
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:340f7b65815701b20a9a59f6363a7b1db7170dfa325bd39b13a1ec062b65c9cf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:caeb382e40b20de9a6bf3d2e204e61c42325c18170a95dc30602a4e484803e57
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:c5d03ce4664fd8431f8baf9c7aebde125634f81da29828a1c6b98487175e5e7c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:74c200f35bfb0061f13c62a6d6bf93b032e0448262d09fec471251b3924a070c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:2757b47d217ed29ae7b64f631d0e18d9f3e96a09519f3be6862c60ef99fbe7f8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:7cda94cf84d911cdff5c3f41bbf9aa5a8c881a4f12aa8cf7179a5cfdbc7c6a6e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:864138f8a4e23e0a280774028c1989d471a7a28acfbf7c37d3477e173c4056d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:5ab4137b7214fcf9aa849d4791c70781aacc684d5018b95d15458331083e01ae
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:f4226d9668fc95309a1a8577806232e659e6811dc6952a4d7c8339c3753d27b3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:a5a0d073d1738bd2b1a6df815342c4dff4598751cdf3a71011ec9930c96a8fa2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:5c191e1d0cc50e063235db3749d0281a6fc01cf7ba02dfb6b411b8c4778e3e08
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:1569cb2c2382550510a5f1598a59c13643f4dc9b480c83f8f18feb19627a971b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:fa78c7ab1ea4ccf7b55cab7dced716e4c8d9cac9c95d2463d00f3bbbe29ec7d5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:54fc0d30561e69249778f32d58513d8bfcddd844d96ebe9aff6693394a64119e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:d34047c132837af72c6763ad6730b6d2accff15364090d60d7b951bce292d441