dhi.io/rust
1-alpine3.23-sfw-ent-dev, 1.97-alpine3.23-sfw-ent-dev, 1.97.0-alpine3.23-sfw-ent-dev
sha256:b655ff9c5a9a0f5be7efc6ebc71c054fa9528f8e384404d5b64b6ba578b8dad2
Manifest digest:sha256:de13b0e39243d3c65340af48964264687d1c40f5d49f0859b4579b81cf04e6bf
Size
228.98 MB
Last pushed
8 days ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/rust:1-alpine3.23-sfw-ent-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/rust:1-alpine3.23-sfw-ent-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/rust@sha256:e9156f589051f83e00ae6fc959af57876c2e5f1bd4083ee97b6e2560440240c5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/rust@sha256:fa8d7e0335c76fa7dc318f63200b8d967d17c68be3fa25456a6d7eb5f3b7c580 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/rust@sha256:95f27665eadf4a4c440df7ec79db5337903b7d2887d4cd9bf2ba36593bb5b827 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/rust@sha256:1ec1bd7b56c515487db7ba79d9918a531e2c3b89d9ec9b155fbc34a42ad213a1 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/rust@sha256:93dd5d096a1199a627dfe4f9634c58858d3f6df2c16eee2f0c44342a5adaa4cd |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/rust@sha256:c756b9cb07ce103424f5edc25658d840738dd850beb5c4272d223213165a3232 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/rust@sha256:3b96f2aa9edc80009e865eaa04cdd39eceef78300823ce595208a1f159e62a63 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/rust@sha256:d48aef76c82107df5e310e0d2c58d6fa8dd868c68123303f21ab1b14f5166026 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/rust@sha256:33c54fe6255432623bb0b77b2594b4e49386e758617e8a0b84436b0ba4a2a008 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/rust@sha256:d6d4f1f8c01e784f843d4d83f3d0e5a8b6bdb23e30a96fcb85d887ffc6b626fa |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/rust@sha256:ab72e372fd243eded3a8f2cf89604122ec30ba0e259eca3008fa0c587ed87820 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/rust@sha256:d62e7c0bad4af02c1faadd7903ed915e914718295b25e7d05f9636a9759c5c84 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/rust@sha256:8c1a424613dc06aa96e6cf873d8470d4df1ed28f0ea9c83fe2c33e6cebe93830 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/rust@sha256:0d1e685f2696f79557774ad1976e8a882bfb3532b3586058586f81ac1538ea3d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/rust@sha256:1c57838f4e6d79a71a7458c173ab4b88b78a66abab50e8a869882649d17984f4 |