Sign inSign up
MediaWiki

dhi.io/mediawiki

MediaWiki 1.46 (php-fpm, fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

1-debian-php-fpm-fips-dev, 1-debian13-php-fpm-fips-dev, 1-php-fpm-fips-dev, 1.46-debian-php-fpm-fips-dev, 1.46-debian13-php-fpm-fips-dev, 1.46-php-fpm-fips-dev, 1.46.0-debian-php-fpm-fips-dev, 1.46.0-debian13-php-fpm-fips-dev, 1.46.0-php-fpm-fips-dev

Index digest:

sha256:38bac4d77b82cdd423c3c4dc5e6e5735085c3586cec0358fa3a1516b8fad5a07

Manifest digest:

sha256:f98719873bd4d46bb26931e7a1281c15f52097bf16aff5e35889cea27b519934

Size

158.23 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
3
19
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mediawiki:1-debian-php-fpm-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mediawiki:1-debian-php-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mediawiki@sha256:763a79ef1e579a0e44e38f530d9e64b1db62ac928fe71439b616a051c7e7a54a
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mediawiki@sha256:dad681f5871e1b795d82a19ae18b0528d434bd571a476b5b0c5ac9d9d724dcba
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mediawiki@sha256:96fc1b39d93d740b8143c2d115633142b5ffbd254e9097251f8cdfdb64040716
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mediawiki@sha256:b670642893f95db33d48b415d3135dd84bcdcdced98d478e175b14467fc7d601
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mediawiki@sha256:117db2b30383ff6fe8d92a0d37e46d1e2b973bc677498c8806ad3a5098fb8187
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mediawiki@sha256:8e65f12a0a81618ab46bd3f199692d08faf1bc374542b2961b14fcc5c772894c
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mediawiki@sha256:726d7eebe7dce84ff27e57de6e2f3a2b8f7c42e2d709b2d6d25ea349058b9e3b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mediawiki@sha256:e41cc5c635a83ae103e476d144170c1ec6f749f8644ad1ab7cba5c44ebcda4d0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mediawiki@sha256:25e9ca8e9ba71bef4988fab85c92d6fe2c296ce252681d6f2918b5e61a141dcd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mediawiki@sha256:97ceb7de6048822484c3863239ce292fcb1063d292381b2167177053b9dfc9a4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mediawiki@sha256:4ddf8cb8b2fb72c1aedf93c23b2b31445dc8b9b81df3a9b44fecc23f4b7a6c13
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mediawiki@sha256:b93d20fdc943739c758c0bbe3439278f9a231339fd6de6b59976d24c600791e0
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mediawiki@sha256:7af694e806041f076153223475581270e70ab4554fb2828b06a44b4c48b0606d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mediawiki@sha256:7f34107bc1bbfb694b1d2db132ceb24dfc79f803ce15fbc51e01016dd1b54b4e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mediawiki@sha256:70ef7821e78044a112f08df5d0198fba48d5b511ff2fcca4c91e2fc261c381e2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mediawiki@sha256:3f2f1c5a2bfdf306f130aed841d9339d7b6f8a88ccb415458554731ff550bba4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mediawiki@sha256:1a17b43e7cd14c806ccdbcc66b77b4d7f1be567fed77921574f1158fa88ada95