dhi.io/rust
1-debian-sfw-dev, 1-debian13-sfw-dev, 1-sfw-dev, 1.99-debian-sfw-dev, 1.99-debian13-sfw-dev, 1.99-sfw-dev, 1.99.0-debian-sfw-dev, 1.99.0-debian13-sfw-dev, 1.99.0-sfw-dev
sha256:ed3b79ed802c719ac8734b5fe60f99f35b12a299c611b999b332c6caa2b4c5f1
Manifest digest:sha256:fcf262ca9ea257d4edf2c7e89fd99267cffe34ede538d3a3f1b64175a66cda0a
Size
384.47 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-debian-sfw-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-debian-sfw-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:899ad2c08003dac28a454f7bbc8dcb9a6e71fd92183e8b0e18d0aa2c434da404 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:35fd076f53f8cc3065c1115229d0603f72018ba28ce840aa095bc2762b767226 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:b016828b6bfdd915d645a1e6d7a3aebe6ce511f46f0d41d56423d8edb36d9193 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:0b185cbd122e81bc8df5e7f8c8cb5f2d32e772057565bea2411adfc3e761e1f1 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rust@sha256:fe7a1cbbb6e8b9ba9296e23f4db60d38bd96747dc5f51da056f906d4c2f2345d |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:b0c3e7614c524789e43cb0b1b32cd8c65191c944e5d2ec3ff69d51467814a6c8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:b21a648cc9a5611b97f47154036626f36f885d3012d32d938f0070fbb28cc2b1 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:d9f376c544447cd5a7306e9e6541c653f2ca38a8b3f6f0b641b642480c4bf966 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:727a23dec3afe56caa3c743edbcdd0bb6b445f403649ea237f3db25aab95621a |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:06bb3c0441699bcb80f286c5098d69d0e1474c5b76572da608cffa72fe74359f |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:fbdaddfbe9b96ba2f8acbc54c90c1d6313fd8195a902eaa5caac0f0242fbd479 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:0467695200aa34fbae7b639476a3529d3cbcb70af375e5b49b7e2b9bd3559aba |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:289cbab8b1f083fc74be5e645c634e034fa19c23b877a84c1b395ecbca4ac1b3 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:68f691b884991ce7b2a92cdbdaf2685344fa6b94e7c063d2174cdfcb5ec37cae |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:77a4a1728765d275b5991a051ffd57399a92646ac625f0f6ce0bb8954b90a853 |