Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:c40ffb6fb146b5e906e6e4816bb1d6c22eaf9903689022ca4e6757d5720173a3

Manifest digest:

sha256:ce8f8d0a077be32e9c6bb2d047533f14da99bde29cb7b5aed919286d1f7a6298

Size

2.33 GB

Last pushed

1 day ago

Vulnerabilities

0
3
7
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:92f537b9ef3dd853aa7e6eed86213d483504d31f7ef6e19c919d0c31a6c092fe
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:6cd45eee80cf40da437c95a84b5aa0a4fe42189a1e1cce96873b41555e6e82f1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:5b24b4a53235ff6bca930d75aae1e78ff87be97005fd57b3c61149c14b8d402e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:4c6ed11d42e871792efaebec205b4106e865e38f2bbed1c64936ed871af26d99
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:0e9ffdbb1865d469318b81476eaf1cc4b1cfa2995c72df4f91e6e074fea2f07e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:6cb4d304505ee6aa092f7fcbee4296997d66f32086f29cc4f38a3d52bb2e2b9a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:7431b13de5c8aa74b39912ed1acf3d16086c4087743beb72406e1d3590b81af3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:7601563b7a7110192acd8413b1e01ce2ad2385c3dbb522e584c1c6cf9e154c4b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:ac97d43a29e949cf52bcab1919d33ffb63f5bb86e91474210dc12bc1ab3a08fb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:561716d2725909355fc9a122d83343dd0a3b1dc889210466f54ebea0119d586f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:43c85703885e9e19e5ef124296a3a66fa3b0678aacd5b102f49a0baa2f294740
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:fe8e3f39647b77b64ee7deaaf0b6c57c05a453e57eaef42e04dca8b117757abc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:2efb7475ef553e33483e62e1af1488c4812cb10ee6c00e7b20dd9c316fe5572d
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:200ec93b1717b0b75722c0a8cf37ec18156bac508611b74a917c6de195423a75
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:8477c5275078e3a0697c6d3f79805d5503e1265bc9699a1f9f8be8fcef5189ac