Sign inSign up
MySQL

dhi.io/mysql

MySQL 8.4.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

8-debian-fips-dev, 8-debian13-fips-dev, 8-fips-dev, 8.4-debian-fips-dev, 8.4-debian13-fips-dev, 8.4-fips-dev, 8.4.11-debian-fips-dev, 8.4.11-debian13-fips-dev, 8.4.11-fips-dev

Index digest:

sha256:82a3be567fce691e88b4890ed677849cf2798c23a0a622fafc8212cc0834535b

Manifest digest:

sha256:a18b360fdce29e1b29a762908248a59a71617db527594a90459da0701180f67e

Size

89.44 MB

Last pushed

16 hours ago

Vulnerabilities

1
1
0
3
0

Support

Active until Apr 2032

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:8-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:8-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:1c4d0b45601746d0e84f7ab5a3df944dcba4b79a293d52851737aac5a2f280d8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:6fa040572556e135b53e6f18f6fd72ecca9ba79bd52c65ecee751e6636c4686d
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:58cddc9e9b24bf1ed8cd7d4e54380a632b0cac2a36c77b6515bc2094b97fc9c0
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:e936adceea24644b6bf39d1ee9e5b52a1deac77695e50b82841b540639fd38d9
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:c52eb01043561b24cc5677d548cd800b0df4cdd94e195963e2eed2e91baa497a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:cfee419f3b2f51c0378f697d904f3d26c8d032462bc698738e7a515706c71925
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:beffc346fe3b2a1eb7620045e038c831a156bafa8cf7c31888a3938c5b5d8455
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:7994f4439fba76f5851450772dfabc36444c7e58ecb4125d0d0f3d66c58877b2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:bb69cb91fdaf899b165ab761254b987044c19e30ca864a2b58ec74e9ea459bfa
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:9a348e09a2ea8615a453b7c28541d008fb47e3b8fd65ced8a76e064585d8d685
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:b1ae0d32f26a1be78ad51147d37367e3e254534f469dcf5f0e6eb751f6db6c1d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:16f18195b859cec2afe75d9f5bb2acd5010273e60fe57600b6343a2da414904b
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:6cdd98b1174cee3ba27f0ae36094ad2b826f4fb05e790e4aed4617ff8a2f3616
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:2312ec414c70810366889a876abc73a09030f01112b3aba3ff7682343bbf6ee9
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:e83f711ad287204ba0bc77cec6dda246bd349b3aaeb98adfda6b74cdbce2d4eb
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:f790de2c5f0774b2649546350818b082108b9f8e6457f658027a854773fd8dac
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:81295f0460429dc132dcf71199a7178e0196ad60dc05980458a42f36363a646c