Sign inSign up
Elixir

dhi.io/elixir

Elixir 1.19.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1.19-debian-fips-dev, 1.19-debian13-fips-dev, 1.19-fips-dev, 1.19.6-debian-fips-dev, 1.19.6-debian13-fips-dev, 1.19.6-fips-dev

Index digest:

sha256:7a706af3090eb0cea0dcb155545d94b5ed664760728c8c6355f7e99a1f7abe32

Manifest digest:

sha256:c716b3882e6e5dd14ac658d203fe1565a889bf1188f3eaad22608f7ead5508e9

Size

107.78 MB

Last pushed

5 hours ago

Vulnerabilities

0
1
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/elixir:1.19-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/elixir:1.19-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/elixir@sha256:39a913e29f6209b6f745db9217d81663ca52b38f1643a5ea1ed05b3449930a4f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/elixir@sha256:930978b1cd20edd580e231a9a30eae3011cb4efd52352c994bd45cb914bb685f
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/elixir@sha256:d8c1527e00b3a5f68a4b413aaf0a641ff3033325991d414ee81edc22cc4a114e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/elixir@sha256:5738acab84f4045b11570bfe7fff6b8a1190c4380dca5dbd12ff1967cffcdefa
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/elixir@sha256:4607617c4c71099bc767569751cc30d15d845a625987ef51bb14b00fe1ae78ef
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/elixir@sha256:3e3a2ef6bf576fc3850aad86335a8b2102182f03bc9d6aef24851a61e3a1a9a0
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/elixir@sha256:e80f4a89e9ff9748ca8283e886157c6bf38027ccf9d825b98200a3f7cf7fb5b0
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/elixir@sha256:e10c376ac6278753aa56b324d78d2c875cc8cb9bb733760b07fafe9422fd16e4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/elixir@sha256:22265901bd7e9986603524621cce5a0dd918099758c767cb6da1b2d8730c2803
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/elixir@sha256:c37d3ed22ff6d9ebe8815065bc79cfbe179ebd7bb9380f4a58d83ff4771fe606
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/elixir@sha256:ea37e5ea66f1eb6a340689a49d1317f906e9929699670e7738fe19b9241f9f76
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/elixir@sha256:16bf1c8313c485fa5daba024929742be043fb90fbbe5f1e3143508755849ca2f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/elixir@sha256:ad0ebacaf4b3aa7980a8461d8499115574d0561b1a4bc26cbdf5eab5891ae025
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/elixir@sha256:7346a6901a13f242d345f41ad0b9ea4af1d157cb68fbecbc721103cf4ad83987
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/elixir@sha256:1046272c3813c46cc72e6c49c7127764f7ecbe91955e393af58cb0942d1691f4
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/elixir@sha256:63297537b26fc637dcbb36cab2ab60312d1cfe3f85d5693010b73863cb4ce6d2
SPDX SBOMhttps://spdx.dev/Documentdhi.io/elixir@sha256:85641fa537c7d1b767bf5ff7d60b3e46ff8a439c97323b737b5408e40ab5e2b8