Sign inSign up
Virt Handler

dhi.io/virt-handler

Virt Handler 1.6.x

CIS
linux/amd64
debian 13
Tags:

1.6, 1.6-debian, 1.6-debian13, 1.6.6, 1.6.6-debian, 1.6.6-debian13

Index digest:

sha256:ca5de2aad33786344176a60a10039600bb2c4ea3d23e6e65df2f4527b0e2138b

Manifest digest:

sha256:4e106dcaeb262fd97746eb4af6c5918378fd3bca735d1384682296f49b4b8d2a

Size

42.17 MB

Last pushed

3 days ago

Vulnerabilities

0
0
3
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-handler:1.6

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-handler:1.6 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-handler@sha256:35afafee652672dfc5ec1195450860f1b0f9651c1b441360c9c7fe1168bb1e53
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-handler@sha256:771de206739fd614a74afe026025f61c88e2d90bf323696dc9e80202fe2d7496
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-handler@sha256:b4d7d78dbb7d80c21e54775249a4b5e292d5f2bd9d1f94b53e4a6cea11288478
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-handler@sha256:33c962fd3a07df85ae5b047b089f31ad335cbc79636de88db6e098424474c638
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-handler@sha256:011edd3fb421382b216d8700632079cf9793774785bf18388e7353b2bbb502d0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-handler@sha256:c3791809152990f4227d014ca1a0588a1f7ba3bb2e18ed46e44b7796faa8df6d
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-handler@sha256:289f1af94a1bfffa79abd860eb32717194e9bd2ec3ca902a943ed939655bd37d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-handler@sha256:618143d90bf36e870020fd83bcb6fd75daa2ba619c507daaff15190f9e34fde9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-handler@sha256:c4b066a8566799b5d56e384cd1dd763fb055799ee4baec72c726a8e6b4db82e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-handler@sha256:4bc8c388eb6b9ae8cacdcd3dc6d9399592d089aa3ab9c18d383853a2c84ed5c7
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-handler@sha256:4556023e492e6201e9b251a7b0d846b2190fcbc7adc06cba7bcda5677dbe2fc5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-handler@sha256:b24c11ec9bfd2e477c8637ca7c1af3ef1dfb7ab2fe86e0b80d1e2b28aa13270d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-handler@sha256:43e56b7ab7b2cbe9d1e357b58afb74b43dd5847de325da1b68199820d6bc158c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-handler@sha256:08acd88f99cb6aac4f8be32ac98a140fd8e8c6ac23b4defce16b8092bc247203
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-handler@sha256:27da1239e3c0cf360abce852d0b6fb5dc08879534d4ce7ffddfb1f4062cbe903