Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:46741b15775413b51fde27d3308953c8717a0c6576a0be4ed91ef7cf4666c2ca

Manifest digest:

sha256:d50269ead375241fe63c702a16d158041e7f07262f23b8c6f532136ce974406c

Size

3.59 GB

Last pushed

17 hours ago

Vulnerabilities

0
2
5
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:bfa37b21fa9cb4b761ddf0e0946be1d9cedfa8fdfdefdda0b51e9749339d01f0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:8df9f279b3975f2cdde3f4087ee6b6a3d1e16701eff9ab48c21a195166e7025c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:d42b908b005dc13e7777c9fdef80970e3effcdc5925c94cf387b31dd461b1ccd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:6be6cc1c4152f93ba5ad9138832c3b1f8f89f409b7c95102a72f2b271b88db56
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:b194d75cb6342888d3f98d96128095726ff6c8e42694787fcccb0433a1fa0cd6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:d7129c7cd3176a4468cb08cd04e6ea7a50a911d48d9de44f8836dfce1d8d1cf6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:d2389de366655c2a98639688620a0a03aa513b37a9c4edb78a0a322f6b719926
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:ccc9faf85c5e5f9d9c2d091b0c643103c6b427d485386002954d5adbca071244
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:4d3d4f85f386c14bed225b19e56b1e6db0f5447b3ffc901660d7e3a4af4c07c1
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:ee1795c2398761ed7ae22178486368735a0f022aa8b130d574a0e7ba0b0421fe
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:1418cf71aa5d50b5b1c2c6bd826cec50c1a3ecb49e8ea09492d295559c0bb2f3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:dd3b05f133afb0a9817fbcbd062d6659676b342e4d6bd20dc73f7cb06b0522e9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:168636cb59eef275c329eba732d67f283560c455fbbab6a04097a1511f2b40cf
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:a6afc114e0c9da951ac5dfc07bfcc9c468c455d8b92d0c9a4a3589a775feab67
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:f41597ab2cdc802a5e809ded48bcf31ce28c5b0a7978d29e2168ccae441bf3dd