Sign inSign up
JRuby

dhi.io/jruby

JRuby 10.x

CIS
linux/amd64
alpine 3.23
Tags:

10-alpine3.23, 10.1-alpine3.23, 10.1.2-alpine3.23

Index digest:

sha256:f09efd5fc0fbc9823c57622ad8370a54b9390febcf31df4506bbbbb99190f6ed

Manifest digest:

sha256:5dfbe1562de6ddeabe9fb9d2f8144979047ae9532fdbf4839ca3923fa8e14065

Size

149.51 MB

Last pushed

12 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:10-alpine3.23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:10-alpine3.23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:052f3b9246b4b8c93f12b27b65cff990a5370d910aa71d3846a6cd08e740f043
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:ca1a05ece92220952c3a47ef163ce59371d05398cd7cf1795f0e134771dc073b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:60d2e43cd8b52c026e33f72e1d0b4a579f8d7f4624df4b8f9d5c4725f6c95dbf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:0d40d418b99924df99e79ad671718f86a324e21132c9ee3ebaa36e8199efe46b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:519f01c15fa7066fe934624d31907a779457b838e290a564bb7377662798bce1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:ae4964e061b913619dea85be7a7eb5c0b915d6620df4968e0b629bed41548518
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:81ad12d4d923ba9e98766b42639604fd6c8681b8299354745a1be135360ae7d0
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:4aa85cfc959179ba16b498384e0cf957bfa44559b4f7722f459e89ea335efbda
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:47b7758715f490cf8404fc5b01ce10eb2013b0adcef5633d1bd3e342f34ead2e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:66f1bc8c36683d5341ffe32fffeab30c77392edfcf36c7c1047b40f6188d34f3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:7ae03d7ed1c404d130edd3498e9d474452ca34760863ff990f6b8f1a42815091
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:a9596504c615dfc2850ecd02fdf7ee82d5545b93599401d642e6bf64fcb23d73
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:d5711ce7751be2a05a84c7e6f6c20b3e601f83719c0fbbee0ad67259f9410a9d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:b3fe2bbf56417ba58cda29a561643c4187d3d93ab589668f3cd865c99e335205