Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:6f334174b7c1885caad1f3da546081adcfedbd34a605dc0bba25f616985d8de3

Manifest digest:

sha256:d7cadb2efa414b3cc2170a2226d868d42ef18b4b831b8f8b3feed33cdcb23d95

Size

2.33 GB

Last pushed

7 hours ago

Vulnerabilities

0
1
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:655d256bddef15a2d472083d0767016a3b7f8dd5f6fa0b3c0ddbf6d35ebe688c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:5158e603da9d56fd5ac4dbf4dd4f1ce0af45882648cb0422565b76e5925215d2
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:003dca5ad4520955648d971c430238d2ec9ad2b1e47684fd7931c0e850ed8cec
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:84171286443b2b6cc99a7af6b8091b8887cd3d47905e00355d191d59660a3773
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:343c60aa980c2d5e4c95ae1d973895e80acca900502c2ac81e440d650df0858b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:c2e42e1e447694d13737ea9ef7e83d778b1a5449047308f5da3da960e2359c2b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:c276c2dd0b12ecd8708f11c8cd9980e362b6fce3f7a1907f4b84cc5f2cc992d3
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:577140457bb87c344df1d31cb6ec30d8a2d42b05b26e46dcaad3fce0b74640fc
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:e41fec77b092350b45bae5e767d2f1037714d35627176fb5e14bdfb0994b3177
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:553241d78ee845df85a41b92c0aebba24b329c80fdf3f4a7dfe7f52ba8d4ae5b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:622a8006a7c5865abbd0e595291717f179f74bcad4fe3318a133d38c63a8e0f8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:499c5ed9add0634681fc2e6751b3c225e04074574ebc693edcb37b441f093eac
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:4dc815f7f6a7fcd8759caa59371d1783c6b56e3669c6686e056e147ef07ba69c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:23aaf46b5d1bc29a903bd2e3c5b6e1d83625a190c425f674febe50bb22cf98a6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:71937b05be2eda825eabd8c218cca73ef428915a410f6535210c7ea3dee957f8