Sign inSign up
Rust

dhi.io/rust

Rust 1.x

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine, 1-alpine3.24, 1.96-alpine, 1.96-alpine3.24, 1.96.1-alpine, 1.96.1-alpine3.24

Index digest:

sha256:df15c6a80804cc2a2d40f3f70bf0cfcd5878e7e9c6c4a4eae8340b91e61dc689

Manifest digest:

sha256:020cb54069570a0f45514cd506c6172417d983ffc8e6e8bb36360a3bc7aa8009

Size

201.80 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:539a1b7a28b517f559a18481441f97de1594c591745f21830e8c37753fa0db75
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:e5ea81789062b80c319f834d022f6cbfe5a52e2d11651c5ce8e42890c0ea4219
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:93347c49ac8d5f70bec092a6488e1b4e3f5d52e53d599fb50f82f544a4ce4674
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:51926f80f2b3d9e63eb8d98308b51fc3b397d421d7b8609bc9d2a9d5cf93d189
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:20f1d6cbc7147f269f6d2c17b4b49f58dc02c55227d94ee2d417311928486106
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:51b075b78100855bd035753f421dc7f770c0c1ce44d297cd5b65cb5482243f94
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:16a197df240de613023af689715ce36cb5d2e0f47ba995d0845b558b09c9d324
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:f0c576ec3a1c5f8f42998e1c958d278258eed1c4a7982cafe15334b77299dffc
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:a22e7672c2c9183c8177ef98b2b0752a36d6cf07f667aa2f62e43196e1e4d699
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:cea4bd4fae9c956231e8276d9a34e01e1e2a834c6686f45a4a6e65dc36f2e2f8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:8e66fe55da5986c07dfa63bb3a2a0c9cf3e260063def247dbc00345add014825
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:45e8525089dcada1bdec1c667b9f5de9148c5f4b5f1122f0d5df9b28a01064f9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:67e84b8c6f0532b65b2c018a754a6f9ac53a635f1ed594519a688cf8962ca03e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:578695b7d8f8e2f830efffd94692f5b18952b81ee4dfda617b7f3234fe02c7e1