RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.3, 4.3-debian, 4.3-debian13, 4.3.4, 4.3.4-debian, 4.3.4-debian13

Index digest:

sha256:04949020841ebda5807527015db8f2758e0c3eb63940deb919fceeeeb35864e8

Manifest digest:

sha256:6bebd0160af104329ec29df9dce2a0dbcf13a1178a347acb53cd4112cef7e45f

Size

87.56 MB

Last pushed

8 days ago

Vulnerabilities

0
0
1
3
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:88dd2527f1c640c37614f86381e1e656421bba31a6242aaf0adc7ebdb8c133a8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:1232d5d43aa65d8cd13c5963e49770a1e0fc8f417bd1a8a7058a350f221fcaa5
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:99b20138e90e898206b97ea4673d5f4d4a9964ed642fa5d99d349d96c30c8972
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:e72f801c1e8838d8eb77d2562937934869f5c57f9365caacc31301c38a0c12f5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:86384b037f302752df9cee103614f71e8164d31e37d153a02da40fff439d8eaa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:3f625f5a2c6f7fde49fca0926ecfe1fca4bb65eb202579ef77d869947fddb391
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:058a558314d59b7baeae5e04c74aafd6b6f83debc169930c0ba5643f6b8cdf7c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:19c99b3a86dc9ca2e73833898c85fc2a0d4de9b9744ba99a1b31ed3f6cd09544
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:c3d84f7800aecb3b8b7de4dca1102d1f5a687a7de7d667842265a177aa1911c8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:ea7fe11ea82541e9dede9de96f69c5cd21b3064786284326aee7ed4bca575e9f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:d9b28137ed7712f67af2f0b5c71d672c3340e754b565a35c541613a9400b8331
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:e1a0c4b53d98bc47d3307e1872331ea68d470408f2ac7c235f74675de2124dc4
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:ba3ae5ef161da5c22187a8641aef5c6014503be39b65989d3b69f197681c8fd6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:b0a324e3294a602a8981f4971c61925fef88c64ad7b0e44e536d7bb279c6af9c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:6d170b221756d56ac846fe733ca83bfb4ee5b3b638063fbcc78043d48e8802e8