Sign inSign up
clamav

dhi.io/clamav

ClamAV 1.5.x

CIS
linux/amd64
debian 13
Tags:

1, 1-debian, 1-debian13, 1.5, 1.5-debian, 1.5-debian13, 1.5.4, 1.5.4-debian, 1.5.4-debian13

Index digest:

sha256:98db90ed78bfb6df2832c1f97660a41c4819d30c0b86e1ecd84d35a7d8f9d749

Manifest digest:

sha256:93c63e374a555b8666230891bfc9a12e76069d0952b1bdcc6d8f79e2363bf5db

Size

145.39 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clamav:1

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clamav:1 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clamav@sha256:c5df476d20a07b1dac3abccfdbf1a526aeb01dee786248c96d4d62f396adddbc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clamav@sha256:f8b7e196d90a175137505d8d4b5fdb40000181780f8e5caf4c2e47f1bf392cce
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clamav@sha256:9c3c85d202bcc7729039604ea35859559a8f46c9c428637d67f0688676221f5f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clamav@sha256:015ce626c248e9a11fa2a24824ef627eaae5f81b422387c8c9046787e24ed8b5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clamav@sha256:0e9373d04b70c9c7803d2030ea7166b3bb948d500bad526c9b8effa8ce91de47
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clamav@sha256:fe4c63b24f5741a372d17899abf3702c4f0e0c376332d08c01281bd66ab640d9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clamav@sha256:d185e7f28f199e9c45821babefac5c5db459335aeff489b3b19bb2c1236e9cc1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clamav@sha256:8e3685f315f671c0591d1619a3e4f418050cd28e158d0a031c7439bb756211fe
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clamav@sha256:bd16b4ccb5aa04c4c4d9671e5e6ebaa8fa513389b20f609faae29ccaca6b995f
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clamav@sha256:192e890cabf31bef2c61c34c82090dd8c652c87a86f2ac7b5436408004240016
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clamav@sha256:7b86cdc6abc58249ba9533fd87a3a4d16dfb54b26216a49a63355eab8231b02a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clamav@sha256:46f55bc2b2e2cd81a06cf277dbe33498357e273d97290e415ea97651f146c721
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clamav@sha256:578940747bc64937b167490256fb559a1d6cd1ecd03dab7c999ea088e264b63a
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clamav@sha256:ff5f46b93d22fdf6446fbd5fd1875969babfd1677c22e9075419bf129297d57c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clamav@sha256:24804536f0aa9bf949b495f0609d2a21fb7ff6893e0746f00ffb0bf63ef6a3a0