Sign inSign up
ASP.NET Core

dhi.io/aspnetcore

ASP.NET Core 9.x

CIS
linux/amd64
debian 13
Tags:

9, 9-debian, 9-debian13, 9.0, 9.0-debian, 9.0-debian13, 9.0.20, 9.0.20-debian, 9.0.20-debian13

Index digest:

sha256:1b894c3eec69032bc7fdfa25bcfe619898a461e56103bd37655c3c3bb9dd8d91

Manifest digest:

sha256:2882bfa082d3404ae289019b358df2a5001319c621b589dde4a383ef23803a78

Size

59.25 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
0
0

Support

Active until Nov 2026

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/aspnetcore:9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/aspnetcore:9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/aspnetcore@sha256:4a7167df8d0116b5e129bb9878eceba7b2cdebc075c82c574542dc7ab529a6ad
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/aspnetcore@sha256:1b40bda5423f5a7947b885b2c10e8296b4e5f1636d67664e409c1710530ce7a0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/aspnetcore@sha256:3a85be424e124ee4228c4dcf30fa5c14ed2bddcae5b81984d58fb1009ebf07b0
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/aspnetcore@sha256:2065291ef600801900bb76964bb9132d71cc130d6a3f83f8765722e940e04e2a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/aspnetcore@sha256:e7f45ddf26d50dab6533dfe101b7d30b06d20948803285c5d108b240adb35a4d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/aspnetcore@sha256:bc1f506f2fb34e0b9cbdec291cabd38d07fca0f12a3be470eb280c727f847b45
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/aspnetcore@sha256:be633326f5fd32284e2a24492d595303f57afabb0f3d0dfab8d01402465de99b
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/aspnetcore@sha256:7714cc24c4b9b2480a8a7b613e80c648183f23faccad2a764931fe06395ca1cd
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/aspnetcore@sha256:b41dc6d7b9774015a2adbc0dde5ae9daa9f6d94e9df8d9d0933f4d9e103a4adb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/aspnetcore@sha256:a7b82f205d4f7b6566cc02b70f341e8d83c56fcce5d1f1a8b66f481388d844ee
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/aspnetcore@sha256:d6c81a275192bc1a0c2ad80680e0ead218010fb26f243a1d3a3d107163b06199
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/aspnetcore@sha256:f8315abf06377679514cc752b414156a3882272405cab0dbe57f57211de2152e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/aspnetcore@sha256:594cf04a112b5c6198027f93df23198120b39e743fa81a49e5a1588bb5a03e07
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/aspnetcore@sha256:bef54e04111a503963cba8d2e9a91c5d5e4bb526e46bce5b4dc29a2c54dcaf95
SPDX SBOMhttps://spdx.dev/Documentdhi.io/aspnetcore@sha256:57fe0da54f3a89ef04cc0a72d0e0f0d299a7cfa0cd47311ebb52a8da5c19446e