Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/arm64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:f4f4e59971ec2b63efeb1af4869f5ff71a53ca2c36dbdc80e9bcfc0d81a51f31

Manifest digest:

sha256:3b42ac8c80bd5612f2baf681052eaff1d622a21589b6e12439df92e0af93f292

Size

2.46 GB

Last pushed

1 day ago

Vulnerabilities

0
2
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:9aa3fcbf709b1e3c4d2683d60c613ad8ae0366f710d290a9099d5487c07cf3dd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:3f3659713dcacd79181a1b64673ea7cb1c99bebba22500e98f49f5c2bfd68af9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:69bbc356e2ab2296fc971fb83c145389480e75c5d8e58b5cfad7f757f6914c53
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:9a1f20f42e59a604d896ac31a8bb27c11338e48fa8ab9f78e829c5d4bcb382fc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:ae801754f85899ec5dfda94a5032263f71efe93e1cf524c26e389000463dd03b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:6d771fb98f29a276608a3846016f7ab2ba305369d83e19a142e492c59ea399cf
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:c2b61117f7713f8a5651f464b63a22c8479a742e4f5b166bb9d411f701616837
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:446704a0825487fc7d02088bf02496200749904ff79d45f1faa4d92d92fc2d74
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:2634ee50bafbe729f0ad7cd9733b043f127740f7037f155d3be00dc6ea99c423
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:752435996b0d3e0fa315eebf88f2307e8d8afd198031cf2f4f7dc7b3ecd47107
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:84a40e097275df3e8e6b967195a3ed53ad2f739626404bcab6b0ec7dd8bef089
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:a55aa91f0f2a966806bd233d997259c41fa7ba80b396d94df5aa96837479f4ec
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:873582c2a8e69bacb9c2f32aa75b3d382dc0881db5640084337783f5d350a84a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:164c0befb2f1ca642f9723a03928ed1a2493386e647129e5bedf6e0107e52f6a
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:478f443e02d1133cd86596ae5cc696140ca651ae0841405588efbaa16ae44c17