Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.4-debian-fips-dev, 8.4-debian13-fips-dev, 8.4-fips-dev, 8.4.11-debian-fips-dev, 8.4.11-debian13-fips-dev, 8.4.11-fips-dev

Index digest:

sha256:5b7adc74a9e053035c56e5abc10940b70c0189dc25cb333b93704e96cb3b0883

Manifest digest:

sha256:599e40f0993db2520b4eace591b8254ff4c8665e43c05327120ee4b3533c46df

Size

89.49 MB

Last pushed

9 hours ago

Vulnerabilities

0
0
1
9
0

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:24a27f644ed15ee0ed0e2f9c811d554c31c63a6595476cd2c4108cbff7b078ab
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:17e7c8eccb6d87414239a3f2aa3b0b8fc19207edb87ced413344dfddb4fc38f4
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:9a81f5cbba57e1cb0eefdb7841b84916645d47c72ca25ca2044aa17109a7e38a
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:3a0388fc1c05234eb27a5bb36062c73363a40c406b1325a419258524d561b54a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:302d2b33fc7ed817c1a2226ee9a4b1db5fafd9ed576e6cd7aa0b37d26e65b634
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:cbc6d029f0e87e2bdb2118e17fa81f94f9d6b2671b784264d818acd4e016323d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:3d29e43cd10dfdabf076566a8ce87a7d1b1a8570d549684bb32af7e00d0de900
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:eeb40430debe40e8c9f75a11b35f7509db66e1f6d29e71a2f24e6165760e9024
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:43fa6d74cd5726541a83786a48fefa5aa8f3916b54e589bb8d948914bdf88c74
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:7bfb33e7b09525d251d594d57ff442b5ae274318e633c9f6d55414cd940f188c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:4ddc3ec367b421844946861a69e8f8f0ae1130006493ff6dda8020fd8014ccae
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:3c0255d4eca9297bc4172d7211ce61efca1d9776a4c5f8464d67138dad6f8470
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:9495d2b0e55447ea7be3af8fb4c5ededfc61b921368a641b14b580c9cf634d43
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:9b2587ad3b77c9f189c17f70e56f2b20aa0a4b83688a25631517e4159e2957a7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:1fb541c3fd9a7d7e1c2e30c1b10355bd15d321847f49feafe1977baa3e81c5a9
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:a4b33f2224e898bf5ec6a26b769be2218a84cee4134167577bc6062b7c58d824
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:09afabd23ad60488f8e3b9014353cfc5dd93c8ea7ac622f1bd491b910d14807d