Sign inSign up
Clojure

dhi.io/clojure

Clojure 1.12.x (lein, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-lein-fips, 1-debian13-lein-fips, 1-lein-fips, 1.12-debian-lein-fips, 1.12-debian13-lein-fips, 1.12-lein-fips, 1.12.6-debian-lein-fips, 1.12.6-debian13-lein-fips, 1.12.6-lein-fips

Index digest:

sha256:e97419216479997272f3307b0580bef4e54643b2f8d965bf5fcd155b09b8db7a

Manifest digest:

sha256:825db84c548dbc6a15c4b45bd1de64d4b5e73c2b75880840724689d0578cb0d7

Size

113.83 MB

Last pushed

13 hours ago

Vulnerabilities

1
3
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/clojure:1-debian-lein-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/clojure:1-debian-lein-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/clojure@sha256:43f80b9832b7bac8c375076c81f8093cb377bcb897706b5ce69c626f709756b0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/clojure@sha256:683856db33ee62e5ec5f5cff17855846e68381c3102c2684fb49f618de082859
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/clojure@sha256:1eb0ffd0270789988b494bf6766307363df51f41860c2e2b5c5fe483e4f4acff
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/clojure@sha256:321e7c3b575e3a33962259823d3bdb5c6a701d277ec9a8336fa00dabb14034d0
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/clojure@sha256:2a61549da60efbee25094a4c33de17c9d08568ce842a2d1b4845d04f2295869d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/clojure@sha256:5af2d9304380b2c170e8c1523d92063719babf4d6fe0042376fd5dfc771dd91a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/clojure@sha256:5a36c20d57a86759d0d7b61562f78a2b7af1cfcf15e8f49fbc7786b6ea8fc548
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/clojure@sha256:c2c53915aad82f252fc091de7d577868499909e387bb5a70c59a8d25a42f1c82
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/clojure@sha256:8d69eec08f26f4e262e52c482c0ee1a39717a06495c5b20e631bcf2f604dfb1c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/clojure@sha256:646f9d38fea44481e20907efe02ddcdb3aab4a22e43b98d3639b305c4cafaad2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/clojure@sha256:6cd30ebab5adc05d758a61abd875a12ad76454ad589faeef2f9a40fbda1fc21b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/clojure@sha256:ac36a64bacbf461e5f6b80bace216340b13dfd616730fc255b61daa191aa9b66
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/clojure@sha256:20c3ff0faf6c4c91f294dfe941437a8628f852093232619f7e9bfbcfaf138d45
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/clojure@sha256:0ac5ddce71adaf86213b6c6e6113ccf27465dada6a4dc7316313e1e4cdd852d0
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/clojure@sha256:bf2df3d04802137e4ff4feffd3c78fe4663bd09013cdd532d180a8d59a845561
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/clojure@sha256:963a758dd362884c0d3d1795ff61ba71c37ec20ae90f24c14ce3038028170450
SPDX SBOMhttps://spdx.dev/Documentdhi.io/clojure@sha256:ef25d2cd839871ef81c9d7657b1e100ad09bc8f02e500a54fd5d611d28e67dcb