Sign inSign up
AWS CLI

dhi.io/awscli

AWS CLI 2.x

CIS
linux/amd64
debian 13
Tags:

2, 2-debian, 2-debian13, 2.37, 2.37-debian, 2.37-debian13, 2.37.8, 2.37.8-debian, 2.37.8-debian13

Index digest:

sha256:649ce1188026c555b568816a458bd82603a811f373e06076a50ff0b25ac8439b

Manifest digest:

sha256:961e2a5f5f571b6d5166b10403b435802bf8ce9b06530acfebc2f4ecef1dc1ad

Size

65.36 MB

Last pushed

9 hours ago

Vulnerabilities

0
1
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/awscli:2

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/awscli:2 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/awscli@sha256:fa26bb27406d70effa4237d0f353dfce6ea2b5f00cbafc54cccfc5eac05ecdb7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/awscli@sha256:2c407b8b56d2ed082fad3501f1fae453cbb363a010cd177543fd9e5d27a51d22
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/awscli@sha256:ddc023a91560c03410d72269a43b64c6c335644d74b3a8c8bfecf4b94e5614e5
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/awscli@sha256:4cc29cb2d2397294ff7948e5b3340ce8e215389d053abd37b051a2e69f4144a0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/awscli@sha256:549277a67bf65006ccae68bb4ee63b85060a4b19ebdd379867976cb2bc3d6cbc
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/awscli@sha256:e76dc64e0048c5d5a3b3f53f0e2da8e61d8b49cf5ab6e1990146069717ff7f30
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/awscli@sha256:0706b5c80dbcb05772252d286f49b34fac35ad874be4d23310a2adb4c169449e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/awscli@sha256:5a8db1829800855807ad84924b6a58d5dab932d6e741660e7a8d6595b3462b53
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/awscli@sha256:0ba0b0ed75f7f1d8ccec931c7d9e9b2b33c0f41cb9fc29594289b2a63a989c14
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/awscli@sha256:611a3a91711f48d44a055d0de0c9c4452da5550214577ba4fc19ef173df24ba5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/awscli@sha256:f183316a9121b87add6f206d6ad995230a99b251dab536ca46f895ffa92db2fb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/awscli@sha256:572781978deccbfd97d68333e51b3c543b8ceb425d2bd3712280acf0d910744f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/awscli@sha256:a64c1c02ed5fe59e52f3968f35b12d5ae63265063fc6a2202b6e84d8e222f690
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/awscli@sha256:e7db1416985a1ce3c46e29e84f444d6ca90c535c3dac0671d2786ace6fc0baa3
SPDX SBOMhttps://spdx.dev/Documentdhi.io/awscli@sha256:07d2803e932b7034d870af60d35703060c77d33c717ed7976816f70c1d37db5f