Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:1a7b9458bbec76c6cff95662018d9a87f0c9c55874080768fdef95e6fe1530e4

Manifest digest:

sha256:cf385ad242b958085aa82675c66ec81fb7d5f40ce3ad14f9c53e61025658e8c3

Size

3.59 GB

Last pushed

8 hours ago

Vulnerabilities

0
4
7
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:cae771eb3d80933cea0fb8f02b7a9964b3123a025a07bcb5724b7fb497519f7d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:6672916ce2e162fb646912fc91953959bfc722967dcf4fc0a25ad4d65d2131c0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:f4d474602e60acefbc44b3d69cd4fa85207665d8594863f1874030dffb8ec9fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:711650082ea83cbcb3078fac59f8cf56c0ad1e9cb4b3bb6553ed74154af28306
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:a5ef7cc3382d58d65414bfbc1f2704b64f79a2257c013dd9df26e6740a360896
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:f30dda676e312f7637e195bcf6b95d01f5f67980bb7c01be9a8989645a69b917
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:ab5dbd41640c879118fcc38dab41c8cedc393e72ea13fa4c86fefdc6eec2c64c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:81e46d8f29f6ab7a4b65ec470b1715a3f5847959afa85999c303450f6c960adc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:21a67eb87411d33255b16a98407a99404b291218df0b0fe95e632016531f5a90
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:a5ac3fc3ab01e48226650356ecc8aef99ad578a7ca87c48a990cf4d146c03a1b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:abfa84a654a8e4de07d16745cec51f5f8420ddbe13774c77d72c5c22f584ecfc
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:9a1588f65394d738c3a3e4eb3135ef20145d1156c3a4e99a1bd6c1c94fcc84d8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:b29c35efc6e5abacd91da5ac1c0ac340f514ee6f822872e8899b581c5b288511
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:8ef04496aada2ff84cea8cae0a890b50b865105f089e581166ce876d6d6279ac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:d286baad3b2a4b351459be82c752277fc5e399147d33818399f6c8dd93947c32