Sign inSign up
JRuby

dhi.io/jruby

JRuby 9.x (dev)

CIS
linux/amd64
alpine 3.23
Tags:

9-alpine3.23-dev, 9.4-alpine3.23-dev, 9.4.15-alpine3.23-dev

Index digest:

sha256:4c7b5a0e852fc76e4ea25cf1042d42972b766ff73055c95cbc819c81f205731f

Manifest digest:

sha256:57bd9f4abe1a017122b4e554a93bed959c2acf9588301fa93a240b263a636312

Size

348.50 MB

Last pushed

19 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:9-alpine3.23-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:9-alpine3.23-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:d657fbb6479a9e3f2f6f9240a976c3b8e6ecc95d47a24b061b5520798e93cd73
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:cb7431f6f07f1501a1355efef4bf1ef40c74bfc31525808124918c74171b54d8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:f55d749e8a81c22499b43e69f5ceca6b00f81b301ddced10195c2a0bf976ef6a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:cd5995e3cf9f422e07bd9c0f3df52d14124b6d29bd30ac6baca81ea2669d3320
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/jruby@sha256:1689d6d56bab1a61cda68fe57b66168661fb7a6a5eaa178ef1973b4c4fbc0aea
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:5ef45d6110b72965c7885bb9868db46739e5c2803247b950fafa521c336ba3ec
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:4e2bdfa28076752f31446a3476521f19626a98858d67eec77671c389b79e87c8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:2abba342000f75dd7346bedb6d20593ce2887c591b5f85481f224f8c61e6d4b7
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:e3245253d466127a046966519d14cc11f1029af7493657d7cee43d3f53323d52
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:b4564a4159bfc748b572894dd677112a4b05bb50e64d13bd3f029b4abbbcda0a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:33563dba60eefdc9e263d360dff99f23a2629ae36b593a70b836ff6678971a0f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:77aaf22df2077da2d84f78640686c1a1cc73d9da44b01904bb6a3cfab48bf897
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:bf323d483faca3ac4a67a3912bdaeb22336e43d4a80771ec31839f7fe9b84569
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:3772602b8819fa1fe03361334fee80e7766ced7942d441a370a4188f58bf1f0b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:5e86c544d16d39115b79bfc4841e2d2cf6511392a1f46fdd78c5993b959b4683