Sign inSign up
Rust

dhi.io/rust

Rust 1.x (dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-dev, 1-debian13-dev, 1-dev, 1.98-debian-dev, 1.98-debian13-dev, 1.98-dev, 1.98.1-debian-dev, 1.98.1-debian13-dev, 1.98.1-dev

Index digest:

sha256:06db04e70b0c51305075803eff4a0d59c810773997692a2c1cd83c90385fadd7

Manifest digest:

sha256:46bddbb0e745147ab61610c0f08c6857ff5a1690c4fb21af3513d821318d7940

Size

339.25 MB

Last pushed

1 day ago

Vulnerabilities

0
2
0
41
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:eab4d87eb14efaed1a1e6870cd93af62a58a6f22e858670fdf8922c07cfecb93
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:539438990a2ef3cafc7800c56c650a3a7c4f304670ba568cb05af1e18ee67731
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:2c560e68244c096069542da42bb69bd623100a794a226a286181fca7366aff94
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:4c73ae939be16e574613b145216d4a5d2cbadbe129d345f0328517d8f09adfb6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rust@sha256:b9dcbd7ac5f949f9146c803b2f2ce6650b6495781b64d235d8b3f87d5269f87b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:431442eed6a8ebe764c0f721012abd150e520b5ec9fe58e567f7a36ed9fd7992
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:2fe79c7b2741bb4563c22607bf9d026fbf1dff0a85cd103bc6c4e208526ce448
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:6d1ae2e6ee4f62e9bb23ae92964dae183f651df8384fab210d14e5e3a14c16c5
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:ce1ee5cce8d2962c705cfd7817389074174e219ebcdf5f822a432d795bbdb890
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:97a0bfaf8a25cb6a15066c2f106d2fb16bf9b37b09a0089690bdb1a97b403dae
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:b94b23e5440ae96cfaa977682212a3fb18ebc13526ccc6d3c188192c274a0288
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:17bed59bf9ef40e5aa98d7678533a5dd14015664f92fc59b880027eedb810dad
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:5ae001878023e56f28bea254f698e7eb6393eed04dbbf3f15a8e262f8e4cdfe7
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:393acd29fcd9cb46f9cc62ba7e22ca7683a89d9d28f63afe37fe36cadea48177
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:c1473683f0eb921b25280419f49f68ad17d96e5f8b0193060673ff5aaf76981d