Sign inSign up
Docker dind

dhi.io/docker-dind

Docker Engine (dind) 29.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

29-alpine-dev, 29-alpine3.24-dev, 29.8-alpine-dev, 29.8-alpine3.24-dev, 29.8.1-alpine-dev, 29.8.1-alpine3.24-dev

Index digest:

sha256:826ddfef6fa59c953d505439c431b62a8e34bb7c80f8eb28804a1ab9ba4ff6d7

Manifest digest:

sha256:454ba2de8774d9a9d743946d754e4f2c17441665f3d4ffd0d45cc480b8e7378c

Size

102.84 MB

Last pushed

8 hours ago

Vulnerabilities

1
1
7
5
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/docker-dind:29-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/docker-dind:29-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/docker-dind@sha256:81013d5914becb05d550b5fcf554602d6740233eb65e1535e2ade764c959e01b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/docker-dind@sha256:4e012f60c2d46b0457b4333cecfcd406d54521b6dc3a08e36112567da7ba911e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/docker-dind@sha256:10d1ec77311152ed3ccd07c21735b1ce4ccca5410fb9911f6ed409fc31a56d72
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/docker-dind@sha256:b18cf8f7eea3de046583fcac2f1792d1bc88040947e27a3f879aa6e5a3a854cb
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/docker-dind@sha256:f1c9cfbb81359750d0f9d7579252c0bdde0625b252dcdc5182f28c0f4c1c475e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/docker-dind@sha256:2e3d10e3bd26e921367fcc22996e3d3b3974a432b5ab7a432b4e72bf22cb6a48
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/docker-dind@sha256:6a0ea1830fec0df69ff29631754d9723bf62fa831f7a87d89cf4ff51a56cc4c6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/docker-dind@sha256:3b610f528636821e0c77c69588d549cc21a843bdc243fe4d1f0c83c7099d79e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/docker-dind@sha256:15409604a7c21d29fbc19a364b3af3a17147dcc723f4accc21c632cb2e81f932
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/docker-dind@sha256:f364d96c67d13ab84b1ce5a1e72529e5627725bf6bf8fece332dfd0407af2a94
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/docker-dind@sha256:a5959c6a66f450fd22311716bb330961571db1c0bd950cec7aa7df8f789af5c5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/docker-dind@sha256:9b951671567e21b4062af43db06a5567b1f4beb2574dbc7a905f43d1d4d3b8ec
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/docker-dind@sha256:aad8f268504f898f904134acc37093f4065b467fa973c6534a647fc87269d845
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/docker-dind@sha256:8941f8f8d9505d6251572a80b159f0feed10b5d4fb1588384b00e2dda597cdac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/docker-dind@sha256:ca5ee830895052774f1d1f77469a5b7a63f231b20cf4df0860418a9facfefc38