Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, dev)

CIS
linux/amd64
debian 13
Tags:

1-debian-php-fpm-dev, 1-debian13-php-fpm-dev, 1-php-fpm-dev, 1.46-debian-php-fpm-dev, 1.46-debian13-php-fpm-dev, 1.46-php-fpm-dev, 1.46.0-debian-php-fpm-dev, 1.46.0-debian13-php-fpm-dev, 1.46.0-php-fpm-dev

Index digest:

sha256:2cbb03cdef51f41a4d8935353b04d3698e9d9a2c83a0fb9d4db3d10dc8e92df2

Manifest digest:

sha256:52a24dcb9f5ed07e204abf095d5284d8cecfb3d93ff3eb472e2edb7dd0c9a741

Size

157.39 MB

Last pushed

2 hours ago

Vulnerabilities

0
0
2
19
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:6db17c22fb307cace4c5cc74450a86a137f262f09431e0ac1b21bdcd4f472b6b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:eb083bbeead504baa226fdb974bb759137deec8b20771526b2efe152388212a1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:5224981aebf76bce2d894af9ca5c419aaff9fb1e6660495c7e1b51caac875ade
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:5664a8ed701c1e823b192c51a4c5cfad7526d0d68864ce3aa7a8f0e86e02c0e6
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:9f9dac5b26f0722b4ca33ba7358956fec19f630316eb571e13749d4a402a7804
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:cdcde5078a30b470eeac4344a6ef94ff77aabf465c8ece6ca7bf21542808d2a7
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:7c58348b595b6926530ec4d3b25471d3469166ec5b06c33d8d4071cb83db582c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:a43afb3a80578ecb2dc3b61111ca0a550fec5aad7c96533766866b8203b0ee10
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:6ec2bcdf04261aaffb86659703e6cf22e888bd6e54d869f93876d240569a0311
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:3921b58ed33a10880f6c4d31e4d3b60c860e16702aec556f6dea302e548cdfc2
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:ad7f95d06d4760c20b9b8443e75ac78c8cc39c39ef2cf0f99421878157459e33
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:f0043eeb4902e60cd8d4ea74df2e2304de2b934a2b7fcd747db21acd043dbe95
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:d0f21759c02329c0713610b81cad739d45a8d69440c242d009f1952b07f5a55b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:4dcc3a2fec9ac2f20af88ba5f311f4cc9040e2c461380eebc2c424cd88064f26
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:4767f306dd3ccca26feba196590953c66ddd451e707374597114d945be59b731