Sign inSign up
RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.3-debian-dev, 4.3-debian13-dev, 4.3-dev, 4.3.6-debian-dev, 4.3.6-debian13-dev, 4.3.6-dev

Index digest:

sha256:29de6f44c508a2cfd968c3e12dedf67c24a3764190a34be6b0f03b823836ba17

Manifest digest:

sha256:ffda9f7aeff076249c23c829bc9bb481ac0382dc7206789be55232c4f8f54b4a

Size

99.77 MB

Last pushed

1 hour ago

Vulnerabilities

0
1
0
13
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:669e68b1d4777d42764900f3237836963218e66b81de13c0ea998647b0987b92
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:9bed2ca74d672baf4869da1502a5c1ecbd70ff05e1abce805049866e22df0a2c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:d66809b134f50d08f1c7b1d9b97f83a3398eee0d1c048c8b8f49a15f27204409
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:f50b7f5bb1972856ff4712ff1622ec28dfc0bc54eb17a66b0c73e415747ecb20
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:786c148db983ab9841ebae861ce2b54d61831a15a0305c06ec734085507335fd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:59fa0e473f45f5dc9cdbb7486df9f47086c3dc6c71fc6ed162bf0d2096f3d0df
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:0b5fa63c05d39be809fc588019f5508c53e79988e6e876af00907050a13e59a8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:f242ddafd81f28eb1723053e0b5f6399499a791f60cd757dce8fe1fb3fa87f19
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:5031e55e452e5304848f4654c24309e9125b53344043b2b5780cb5669e9c2a5e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:d58da252c3cc587485e4bb87379a39ea117d1d4a23013a0eb628216718776063
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:b3e2f9759168ac30149e39fb808c6738fe68f1b38727408a6bbb5613cbca9145
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:d73239ccd15cbe62180297c2f82751ff257d507278cd99afb9700b5e9e687600
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:0bb1c8ebe66fcb64f28f0ae3241b0e7062ff5afcde5f4564da8141bb3f2da216
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:035d7af804216d751dc1f847a694f46a355d2d36cb05f18574354ca52cf87cf8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:db717ff45263d5689189f5645a0cadb3b1598133602371589a406839f2a6df00