Sign inSign up
MySQL

dhi.io/mysql

MySQL 9.7.x (fips, dev)

CIS
FIPS
STIG
linux/arm64
debian 13
Tags:

9-debian-fips-dev, 9-debian13-fips-dev, 9-fips-dev, 9.7-debian-fips-dev, 9.7-debian13-fips-dev, 9.7-fips-dev, 9.7.2-debian-fips-dev, 9.7.2-debian13-fips-dev, 9.7.2-fips-dev, lts-debian-fips-dev, lts-debian13-fips-dev, lts-fips-dev

Index digest:

sha256:69284fe2bbad6e06bb6e3e5940a7e684fc97c655f51b43aaa44d9cb419ee25bf

Manifest digest:

sha256:4ea780b4cbf733356aa5a9bb85b6659e26f3bd5b1631c74ebe9e3b8e2f0fb330

Size

95.90 MB

Last pushed

2 days ago

Vulnerabilities

1
1
0
2
1

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/mysql:9-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/mysql:9-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/mysql@sha256:133f8d7b09a982afab4e3e6cf867c576b12506167748ba39e0daead13656d9ef
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/mysql@sha256:707a555f681738e68e0d6f856401413d8dabdc4ce6d7e5933845f6999d37c92b
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/mysql@sha256:f16cb638929f67b2f568b11c605290da47cdc575808bf676a2d1a64dbcb9f765
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/mysql@sha256:5dfd1de36d2a7155eaf78eadf1f5cfec982fa8ee9631f3bebdf62ba5bd486a13
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/mysql@sha256:409fcbe833e6eec41c4238faca6211be8dcad80fb4eff82037a8093a9eacaddf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/mysql@sha256:bd0f4d283b20aaa8bbeba1c8cbd038721221fb4d60d5f42deba6c96f7b431942
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/mysql@sha256:ae9401d66672b219b184a5d794a5a268e62035be5796565be8c9c6f32b909519
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/mysql@sha256:a08629d23e81939709d3b191d342ad5f234e0eb8ec014e0ad750d155a2f40ce6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/mysql@sha256:f14ee34a424813e19b92b9441170cab100604f818e5cca005476822d96135a3e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/mysql@sha256:79186f802f4e64e1d6f5f89b2e80fe107bfb2b943b28f4cae202c841e00234ad
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/mysql@sha256:e9d0aa2a0a01c7a2c8d3c9d15a5d3c96f4cc4f254fc46911b6ef7b16212867f8
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/mysql@sha256:4931c706d1d4aa6029e11f33e0889de56e9acb828bbfbf88d07360db20a9a593
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/mysql@sha256:8bef953a82d5207e02d711fe5b6a8af64808f57e5a5486b1e3085b481c045253
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/mysql@sha256:a00cfb5cedf267077db648b44fde81739d6c71d092392ea6f5d1181882c89a31
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/mysql@sha256:d12d56124f104d7b6123d2d5a807e52c4fca5b57a8aa2b3d17137d94ed94c1b0
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/mysql@sha256:23ba316304cb8c66ba2ec354eda68de2dd1529848a342e07cbf0cf47fa9f2be8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/mysql@sha256:a35eb5ba00fbdaa702304b18e3ececc88b752a1d8d4ab504d3023abdd726445f