Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:0ba67c53c0c051f81e1422c6675b3060a9432dc573087bfd6ffd49d8cbd4e955

Manifest digest:

sha256:17427fc2fa1c52d8805ec7d9c537df48cb75fecb7906c551e9d7ac871038754c

Size

2.33 GB

Last pushed

22 hours ago

Vulnerabilities

0
3
7
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:3134e523077f21cecad0899e612d79e33f48159cfdcaa2d6d24295455d583d38
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:43831e1040d61e726a862e25ae107e1a13f4e4d44d95a1c38a8b6635742b71a4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:6ffbfe85730ecc80d11fb2264740a1871d745389f838f9a8fc65e11d00aae591
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:58601b19208fe8f394b19418382a8239cb86cb599d000470fbff041270db3b57
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:cc9314170a78791fb375e33d21faf1c1137b515affe3e159e00f74b6d15cc210
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:5ef030c68dcf7a97d5ccb0feda0cf46561d4d5c2cfa7a0bb243dd3ffe05c780c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:e3cf849fe917c40cf3bcabfaaf98b271ca4b8c05a7111d1b0ca527b773ecef15
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:a26c5502f3db7431baaaeacccd6d0321055d3712dc3bab37654e7005abc75057
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:097ff9868d044dd08b5d419d01c5abfea970d64c02a44d299784e740790075d8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:1d93fbddfc077f3fc07a244a169e1366a629b66dfdd519cbeb3e01eb0aadf03d
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:474353d3fb7e990abfef56538ce489918886c4c5cfd6fe2b3c563a2fa2c26c43
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a3b0215162f29e3f0a0d3fc773ed2d2fdce3cd73bfd262119beb6615a49c2a0c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:7a2185e75b5a3da5c97a2752e1f1fe103ecf9294b803321a961e52dae43a7631
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:dc5e94450083bfb3223bde4c992e6e4c2e0a820327b8c0b3cf9f755edf7758f3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:97a1bc772895abaebc95a949293a5b77eac2e687588d37d2bde8d1714cf5c9f9