Sign inSign up
PostgreSQL

dhi.io/postgres

PostgreSQL 17.x (dev)

CIS
linux/amd64
debian 13
Tags:

17-debian-dev, 17-debian13-dev, 17-dev, 17.11-debian-dev, 17.11-debian13-dev, 17.11-dev

Index digest:

sha256:afcafbca99f75ea91ee60c851ae527eea7a131a650ae5562300bc19d32a51a4d

Manifest digest:

sha256:dd82ae9df50f5661cd5fd17e21e1061c44d36711bc41885e21a675d978893b40

Size

131.29 MB

Last pushed

2 days ago

Vulnerabilities

0
0
0
2
0

Support

Active until Nov 2029

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/postgres:17-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/postgres:17-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/postgres@sha256:e956ad83f62519ebe91e1a2ee537bdba1c8371923d7ecf09282042edcb8ab0cb
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/postgres@sha256:d86fd60d4af46751f72ad53787c6f25404c423d688610c1382794f89a24aa809
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/postgres@sha256:5d6c57408ae731e5122772cfcc068733f7c3b8ccf82318b67d53f92366958816
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/postgres@sha256:c36dd7065c7dce265c08124cf7b836b9acf8b393af7df0a79a0597cc6db74f6e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/postgres@sha256:0a679b91f393957a70e8ca578c0105c765b42eecab1ced047d3a52f8804b1459
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/postgres@sha256:0f06221cd41fed37d76f8d9a6d0b3be1ee800dd8ef0a147de2a9b6c0f2e8f7e0
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/postgres@sha256:ada89388ffe4d7b4da93d6b129a3200ed25a63d6ef663b20caae823c47cf73d5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/postgres@sha256:3293423f3af0d710994758f5257b61e9fd19f925935400239e0426bdaeee4a4f
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/postgres@sha256:5f9b1d3e42b9306f705dc7d78d7f68369f9319b82f735e92358d4e7819238f80
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/postgres@sha256:db415f27016abba16cecbe2651646f011a9b833fdb708cd61e18faac79c99070
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/postgres@sha256:026ebb7644409647c9b037b0971c9cc5d9edf6a97301b438c4759401adfcdb4c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/postgres@sha256:d0d05664e5264830a5c2be65719d13cdcf22782770d9379b4f6243e9e43859b7
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/postgres@sha256:6d2b0ff17a767d99d5da88f93faf84d7e8ceecd54254ab2c022b7b48089983d1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/postgres@sha256:dccfc12e1f5c7c0da078081a585d65ad49f9c7e79308c20eec8a1fcc4c2f09d0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/postgres@sha256:70ffce628a528453a7ab775cab9a2b6c538990022f0f241ba0c0e59be8fb93ff