dhi.io/rust
1-debian-sfw-dev, 1-debian13-sfw-dev, 1-sfw-dev, 1.98-debian-sfw-dev, 1.98-debian13-sfw-dev, 1.98-sfw-dev, 1.98.1-debian-sfw-dev, 1.98.1-debian13-sfw-dev, 1.98.1-sfw-dev
sha256:2e437641b51c0803286f7a060600f21a72023daa35b0f347855cdf025e5da80a
Manifest digest:sha256:05ce3be56e839badf315948c63f15f76c143472283b26c638f72ad7cffc38bf9
Size
375.85 MB
Last pushed
3 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-debian-sfw-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-debian-sfw-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:66b5e75f7aaf8a1ecf3058576995e54a2643eba97763631f84e8a40c4ca42177 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:3eb2639d529bf56d9fc9dbeaf6b48a773b0261bd885135a394e1f57e5a883fc4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:63689a70e00d3ac3d77b486678d80deb8fdcf78c866d74c4de5de95a49a701a0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:21808c3a831764c59702ab7226f08e9d101b281dbec7bce246c4367e5d56fb2a |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rust@sha256:4a2bd6954572495ac4749da3365bb28b5a844d5aeee113d75feddc68f645578b |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:8eed08f6911d86366e8885a05fb9a6cb98858ae851bac11fd6a59077dfb24a48 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:4c5e805fe39d677697ee2df6ab432b55df54650f1d31afc77aa5b65b47ab42bf |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:870b96ef12e507c68bcc964935b48c80d0989310a24c0b69bcfac3c2e9643954 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:2cfbdd238852f653f3b9381a21b1a7480239a434c690ec9d02f47c7d4efa3b81 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:264ec2283d0f64c246aa81cca7a3b135bb5ea40a6c68db49362fdbe8db68b585 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:40be66ab4a1409db36d574397a9dad92d8b70e7596108e5925c6ee2df0583fd7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:f29a7cf9517760025494fe11385de53a3ee9a173cabcb53d4a9b9d9d2c8297b1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:2a04f781cd0292ba3c3cbf4f812b3b38bf32ac2993ec57b5d166900c035dfd70 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:60580bbf3fe0959295ea6d93cecaa51f8cfc67a921504ca3b58a563cc249ddbe |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:d713cc91ac98332629dfababdb2590f1d95fbd61c31694b2eb4b1c461c8f5c0c |