Sign inSign up
Rust

dhi.io/rust

Rust 1.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.98, 1.98-debian, 1.98-debian13, 1.98.1, 1.98.1-debian, 1.98.1-debian13

Index digest:

sha256:219c603d2b2ef01db93dce55341959cdade03dc0abf22a85d02cf23d6bb84d98

Manifest digest:

sha256:eb33b1d79e1ec1336b042c1d9bd2aff9b37de0f77175af6747311ee41896686f

Size

329.32 MB

Last pushed

21 hours ago

Vulnerabilities

0
2
0
37
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:9b7d1b18f248ea11cfa8ce1ff567081364c5b18a796746254e5ec80ce322f216
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:cd0f6873d1915549ced7b5bc9934acd3e9040b6e02d7589e9ff38c5a5781c5cf
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:94c7bf5e6f58cbb005667381d8ce457ee799a144272217c33dc09f35e570bbfd
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:70d9a206f840e66eea8a1c916779f024602968b07bdd83e6100a1b5444f4b1ea
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rust@sha256:ee695091b2fdc598ed4f80d9cb52e18fb3ad5b169397961713182e13ad1ff87d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:a5d5a43d60892d22cf27699c07d1a9035e197093fe815c295bf63cf087759bd0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:96a396bd6a9e047c9a6f1a46ab34d1d295eb43d3d1ccf7bdd88fecbd8513dfc7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:a33f46ef0da814b9c2da506e1fc811cd08b887b5aedf6a1bb6bc0520acf5bde3
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:c1df9911fec409b1f6d95075281bad14dfb238c5076c097019bec3c42a502df0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:842f84389132346ef17d7cf3e279aec75485b053ad566fb9429dc8839a6539b8
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:a873a616f7967ed72a58b72ed96fb579f01d479cf58259383cb18cd6d5c110f9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:0d9719d7b21e7eabb48aeb1519a08a555e856a08cae5722b03625bcc055914af
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:101c6f1385fcb7da031eb93dd8b8b7784a1591115604012d3e2a76c72b93d0ae
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:5d184cd41497de69861e3f32de73e71414133639c432ff4e9c6359070b2d95b6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:8b403919869ab9595eff96b225bc8b8a35f4185018af9438b0f1bd19ea99bd87