Sign inSign up
JRuby

dhi.io/jruby

JRuby 9.x

CIS
linux/amd64
alpine 3.24
Tags:

9-alpine, 9-alpine3.24, 9.4-alpine, 9.4-alpine3.24, 9.4.15-alpine, 9.4.15-alpine3.24

Index digest:

sha256:7fc0081df4d72d0f0c44bc162dd5f17c8c694fdebd67fbfcd5f386b41ed99fb2

Manifest digest:

sha256:e66edc12a6257e0587f9d74be0d40a30e095cb9239801c9cd6784dd728b8aca0

Size

125.54 MB

Last pushed

22 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/jruby:9-alpine

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/jruby:9-alpine --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/jruby@sha256:0bc7f185789c4d360fd5965ec9ddf23421ab50dc5564fdfdcc30e49c6ee75b8f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/jruby@sha256:27d2bead4a9c1ec0e001a8fa680fc399773258efa681f0363174a03bfacca72e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/jruby@sha256:1bea16e1bf3f866307ef33aa6aae75040b9fca3b4a160e069751644fd32b828f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/jruby@sha256:499a3f9297eb6ae5ddba03cc7038e28d57287ce391f5b81cc77ea95cb3f79559
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/jruby@sha256:0485f121b956116dce1816b0b38b0e602376f8e0ed5e838266258121759ff5a2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/jruby@sha256:081ebb1e69026eca2be58af555c6fb91d0a963c28f35ad6412975542ac798e23
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/jruby@sha256:d3763b6ffb360c763525cc9dc268cf0308a9f68750ef33b354c3efdac7184a80
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/jruby@sha256:e1ba9a7b605a5fc88d9607f225bdf4e50dbcf82b34d4c9f1262d239dad2c2182
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/jruby@sha256:f496214c10a26d52658409e5697193d70d0e5657468c3ed99ce8f84599eb638f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/jruby@sha256:9426ad41eebef3e16dafcfd4ac1a807527c41b6a9f6bdf62c9e9b7c2576a7059
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/jruby@sha256:5fd1184f1e49b5f400f50c7c087084651b879894942f993cc0231dfaf90daf4c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/jruby@sha256:f5d6ae0ed7f16496581c136b010bdda7c05fee7fccc30634c1e36d8ae1bd380e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/jruby@sha256:1990dc157703afc2a8442dcdbed57cf63d69fcd92b551c14de0f27b7a8a4bda1
SPDX SBOMhttps://spdx.dev/Documentdhi.io/jruby@sha256:9dc3a64232026418d2e261168e29c1373000574d5c2ea7594ea4c4d9dbe90311