Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x (dev)

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9-debian-dev, 2.11-cuda13.0-cudnn9-debian13-dev, 2.11-cuda13.0-cudnn9-dev, 2.11.0-cuda13.0-cudnn9-debian-dev, 2.11.0-cuda13.0-cudnn9-debian13-dev, 2.11.0-cuda13.0-cudnn9-dev

Index digest:

sha256:f42cf54db182a67c38c81bfbaad2134d14b4fc1c0d14541e386d30260d5fd3be

Manifest digest:

sha256:fedd14fd767724fcbe78145d2dacdf43947239810ecf284e604345bc0ca616ca

Size

3.59 GB

Last pushed

7 hours ago

Vulnerabilities

0
1
4
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:850f1676c06decd6cab02d4a56731816f7a3d72d94052d95d69150a1737889d0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:94c5d65078426fb36e18951e4aaea964926bae41ffd99ef3d26ecb48cf8cb989
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:b06768b442f3459d83001b4e3481562ca11e7b7ed8c55f70178bb43bfd92c391
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:84bbabf1ab1d4bc1941f2b73870de014355309bcb1e576ae452ae85c4334a94e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:f2aeea9ca9c1d2843277f8a3cebe738422493357ff74e2c2db95e4ece2db18a9
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:d299fab27691278387c4098f2f08d529b2bf9407bc88a33260f9448aad5be9d2
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:6398e1053f162f15ca544f68ab83387ea476f9a0e19fd4441a60cfc466e1df54
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:25bd7f4cc50570a3c360cf94d3bb2d130f9fadf60bb60eed9b86652af9683aa8
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:014526688279c39c851dae32215814d2bafc4049f5994a517a2cdedd6fce315c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:6d40c7dc74cba3a208a104555807bbaef0d522b98ff0c3b8e123405a4eb16825
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:92b72b6bab781bfd4faa6f5dc624df3d81b10790a3c560ba4bd762fa2086ff1b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:614d4e18b02d4c41ac5de85d6cf46d67e88fae54cc67b52930b523941cf87aa1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:18ab71f223a94bfb3a0f08222ebb6a7a095d2b3140ee2223a80e5be599287086
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:ce926a1cf1d6086345f6d9235f65a8075a58a633f4139eec0fe86bcbcb4747e0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:338da1c013ec7508c0686cac36925199b2a256811268d7a89a5953ec8a7b9bd2