Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-fips, 1-debian13-fips, 1-fips, 1.12-debian-fips, 1.12-debian13-fips, 1.12-fips, 1.12.6-debian-fips, 1.12.6-debian13-fips, 1.12.6-fips

Index digest:

sha256:bf1c197965e70c9b344529a1868b7657dec79df661ab3db6759607055808f7ca

Manifest digest:

sha256:8f045692464960783fffd690f258d3f9df234ffd68a823a8ecb9c5a2d9934a6a

Size

122.26 MB

Last pushed

4 hours ago

Vulnerabilities

0
0
1
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:4a5882c2d7b0a1ee97611bd0dc7c3adec2e6620911023968ca1f14df1ea9a7c3
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:67c4ac1d9f9ee42ca4ebbb279c227fd7a1e5e27d3eb3781856ad138a3d967cce
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:609390d7ea2f4750c98440af7e71409a6bdb1a64c67dc6cbd441e569731915b9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:f0692c70842e38f6aeba2798a6bc76bf4e800eb2d8ad0e27757d746c7dcc60b3
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:ffa06d8c04e1f173d0749a17771bc39f984a8bfe6173a4027c144ca8660c4056
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:e03ea3f73449aa0aa787c2c23cac91ccdd233c30166e91d54365e5e452435662
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:ad09c113e536380cfd91f2cc7eb13d7621ed188cb28429ee223301a4a1194f77
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:fa561890a4ec1b55e48c1b1382a646a31b2e7979fccb1aabd096d37bebbacc7b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:ab5b4edba6a188e5b31d1006b2dca3310d81490a2f396577a2ee02447bb36331
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:fbdce7d43e69fab47814bab913e1590b6097606934d6920efa44e950a7b33200
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:37ff5b00cbf1847ddbd266e95b203e6defaf260fc901c117c40c4454c93cc8c2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:d2175781c2fc2d1e456776a163ef3eac9fb064f5d598d7cb0164723da9c446eb
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:a1ecb6cec17db40def7c3ed897a07545384a8d86b7d413aa162618c087bb71c6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:9e98dc2b6c85f0ceb56d30df27f363942559e813958723d8a00876dedf59180d
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:e85d646d79527d65f85713900b1b3d6a7b692d3760279069761df8e0cb2b0025
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:733953c22f8170a2436e16262efa3ec9b1dd1b581177a032d580324d6a77772b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:dc7471cdef1a0fe269a19904761378996021d9736fdbde28c5e0ae425ab52f39