Sign inSign up
Virt Handler

dhi.io/virt-handler

Virt Handler 1.9.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.9, 1.9-debian, 1.9-debian13, 1.9.0, 1.9.0-debian, 1.9.0-debian13

Index digest:

sha256:8d6b69247b4fba65810dcbd0476410c7cc3a88e991ca94960e0e9e8229de9293

Manifest digest:

sha256:87a7a00475c5026af0b0055822c3f96837538c2a1dc8e465631e78173db046b0

Size

44.27 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/virt-handler:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/virt-handler:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/virt-handler@sha256:2636e1307dea81e15ea5aa75da933440a087252c2efa438a0f5010f3d5acff80
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/virt-handler@sha256:4e72b3a8a267da6520ca20606d09cf09bca7a1bdabfd086d6994f1fc746fd777
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/virt-handler@sha256:d6bd20aa2dfed31d2ac3dc8e69264e490252723b420df3c06d179091bf6c8034
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/virt-handler@sha256:b323e6d34c2e799179e033bd66d8b5d75961e2771893b617707d27dc369facbd
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/virt-handler@sha256:fe83a2b0fe0efcfd04fadd603eedccf1fb736618ce2dd39051ccf73a92445b0d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/virt-handler@sha256:3c00d3b0fde72b8833819af5e294cd7cb05b8e6193ba72be66f82d6fa5b9d690
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/virt-handler@sha256:bad911e2e59bb8871ba630774b5c58f321e54330f152ae469b7eb15717531215
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/virt-handler@sha256:305b9a89caed0225be41a9059521ddb903625531de54e9479c084ff77b529b4e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/virt-handler@sha256:1fc925d307247adf8b3003dcb73280d7c5f05196fd48f01913f9fe220a5090e9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/virt-handler@sha256:1fa2c184fa3d720c44e6e9171cf195bfff507ad271260861b08a796b93fc88c9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/virt-handler@sha256:c39202d4886e82e9c590f6b276a22a42f933bd14a2e967a056e3288d61fc8721
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/virt-handler@sha256:39994fe6835539f9b2b5ad15f0d63249598f77419f6239b18da33a3936e66403
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/virt-handler@sha256:cf8c81fbc0172d650eb4903357a676ec49ae9b490e7a6409a12269a266d959db
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/virt-handler@sha256:66479486c5bc45bd1d5bc2e9fd94140a23329f93b9c8672d1222437948160475
SPDX SBOMhttps://spdx.dev/Documentdhi.io/virt-handler@sha256:808ea829f383ebd471d5b0108bedece6549766fd6f63d80874926aecb770bee9