Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
alpine 3.24
Tags:

1.19-alpine-fips-dev, 1.19-alpine3.24-fips-dev, 1.19.6-alpine-fips-dev, 1.19.6-alpine3.24-fips-dev

Index digest:

sha256:2aa6df5bbca6297ed525a31f4b1db7b48c268e10ef0848bdbaf789ebed847790

Manifest digest:

sha256:4e564d048d79bf9caf6f0098162aec4127ee36d0218155742cac9f5abb4d64a1

Size

45.81 MB

Last pushed

21 hours ago

Vulnerabilities

0
0
1
2
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-alpine-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-alpine-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:77b4d79267f809d2e1a50695d916656c06ab52f549acca60042950c4d0b00390
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:61593403b38a652f49d532599db18cb7ce9a315eb6da5b26e22d180ac26c4e77
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/elixir@sha256:a0e383ec5ab65f5b6e71fd5d2d567fb51ca6104e32a1612f1614f22f8e70091f
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:d6c70118a0b55c0cd52f5f5d8801103fd2273244448b7d39033c793d367729fd
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/elixir@sha256:4ef101fa7905dba9df959528cbcb91dd8974b54f549064cb1d6c9cab7df58a7e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:5c5d968b3b63479344de23c8fda0a8a8d64e114d0cf69d6e1417a47e88708e8f
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:ae2f48b77f9e52b07bc141f52196f03f850fa77ef721e59b9e1424ad9d29699b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:82905496cb655d41cb9caa160e0370f2385a2b1294a584525c37d71ca3d3d31a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:3798d6d4b542d92501747cf1e9ddde7489fcd5fac83ea28334a154b4cbffd197
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:afddc0c57ff14c4cb1fae000823084024261308022985afc4a51a3b6e1c05175
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:f09305fe214beca5224fe9805d7c18de1f579e1ea8387f1e5f69d8279b1afdf5
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:9a52c084d04a74280a34d965ef787a2e9b2fd8ac48e33a2bc9d7616200dc8045
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:0eb877113cd1736da44ca41c0006136ea8c0297f045516388c41ce065de9ed70
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:07552e814d7a8f35d2b59d6dbc3b2b3b3347e059dd8772244233846c6611cc57
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:c743d7e1acda6c1bc11950d07b625a5c40dcbbd9905e2afaf0e2d1fbf2ea28a4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:53a745cdac27755ba5a7e9235dd9ca70dc250e09738f47d82e62c978a05e8656