Sign inSign up
Eclipse Temurin

dhi.io/eclipse-temurin

Eclipse Temurin 11.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

11-jdk-debian-dev, 11-jdk-debian13-dev, 11-jdk-dev, 11.0-jdk-debian-dev, 11.0-jdk-debian13-dev, 11.0-jdk-dev, 11.0.32.1-jdk-debian-dev, 11.0.32.1-jdk-debian13-dev, 11.0.32.1-jdk-dev

Index digest:

sha256:b3835a3f942ccb0e79246ef4877fd8a1cd1376461f7abd345d8528bfb5d80495

Manifest digest:

sha256:d94ff11d48d2af52790d2d5392c7da951f4bf5ad25ef627c5c99420995c9609f

Size

148.18 MB

Last pushed

1 day ago

Vulnerabilities

0
0
0
1
0

Support

Active until Oct 2027

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/eclipse-temurin:11-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/eclipse-temurin:11-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/eclipse-temurin@sha256:46c362b5a615c22376f8de4ae74a306e7a14579d8d0d62bfdc22024bfd3f713e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/eclipse-temurin@sha256:25a90dc56da245ce20331a202755578e3c832789d37c88f1866cc6d18cdf7c08
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/eclipse-temurin@sha256:10db896e5a655c236858ca360d67ebdfcc12d097d0ced823c7a38aa8cd22db72
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/eclipse-temurin@sha256:141f0fc14d801a84e4df0f5014ba68aeab117723e6e6b1c19a36f210f991920a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/eclipse-temurin@sha256:b6e4eabd7c7530c6a1d544ba9786df761c7e7421a936da95ac18ef6f481b6711
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/eclipse-temurin@sha256:11740f4b0b6d30d48705b1b03b74868c6eb48f8fd5d4a3c775ecf49286b3b5a0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/eclipse-temurin@sha256:71d63bed61db9b40ecb47dd50684f5677e9e083ce73c10ebb33d1196ad7ae554
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/eclipse-temurin@sha256:422d47798d62ef45998a17729a5b049a4a63861155a112604baf176e5d20a033
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/eclipse-temurin@sha256:8473d5928c0cf96f68cea813695ad0e0ff01c5b5035f9b676eec69045df7e1cf
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/eclipse-temurin@sha256:88c8c13a1583c6030430762974b453c3404eb1ccf2614281dfe786d0bf77efa5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/eclipse-temurin@sha256:befcb25dc8024b518eaf7ce14dfd1ac78d98649ec1c162db3109945cb4d57ab8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/eclipse-temurin@sha256:26e0ce0b962f079011c3284d8ea93072b71f8a43ca7f233e60237bf4530cdb69
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/eclipse-temurin@sha256:d281b3159f8248f87af864cde9bd691c37a1327136bf8a6899cb49fd80bbc0c5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/eclipse-temurin@sha256:844eeb81bab12316c73f39ad67a755b96c2411a509dd8be58a558b7a02c0494d
SPDX SBOMhttps://spdx.dev/Documentdhi.io/eclipse-temurin@sha256:496da40f05e52a79001c77768ba9ef12fa6a6dfeffe304ff6bfdf0196380ece9