Sign inSign up
SapMachine

dhi.io/sapmachine

SapMachine 25.x JDK (dev)

CIS
linux/amd64
debian 13
Tags:

25-jdk-debian-dev, 25-jdk-debian13-dev, 25-jdk-dev, 25.0-jdk-debian-dev, 25.0-jdk-debian13-dev, 25.0-jdk-dev, 25.0.4-jdk-debian-dev, 25.0.4-jdk-debian13-dev, 25.0.4-jdk-dev

Index digest:

sha256:ca5b34a7b6dd25b1d1efddcc08f50ef12ccb4f3a7afefb8b72b350f723b27fe4

Manifest digest:

sha256:53ca15e6ea074cbbeff47f863d1360149b030023b5c1a67db28f9366b700817b

Size

166.42 MB

Last pushed

15 hours ago

Vulnerabilities

0
2
0
13
0

Support

Active until Sep 2030

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sapmachine:25-jdk-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sapmachine:25-jdk-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sapmachine@sha256:48468868e3ee6d9393a97d2454484dc2f6f0c669775ee21e1b306d0566fe8e9e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sapmachine@sha256:f21b3cfd5bd67216fc01ab9101f5bbf2595208f95ba4acf1e3781dfa8b8c44e1
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sapmachine@sha256:1d56f3a16ec9e5c27670c1afed528b06188451963e26dbbad66610daeda33fbf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sapmachine@sha256:8e90dbdbaa3d182d5bad387bb40b1ba9c40997d5bc0b988785757e7f1d593e95
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sapmachine@sha256:a6a9e7936cacbe9e3c7276ffe1d101f13ed1a8fdc26b5c4c75e834cb6bfb0d6e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sapmachine@sha256:12154462473e7b5bd7f8face401ab9e819100eb1b6c6ef5c6fb8633f21382194
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sapmachine@sha256:6b177a8ffdf1ce0e2979062505caaeaf95e49b85cecd04ed5ac047661d01cc11
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sapmachine@sha256:84c9fd6a8b4e44392d4bc0aee986ae1f7ed69e7945fbf3b52b906017c5c63ee1
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sapmachine@sha256:44e512c41f994b773bd8fc4d7f7c8f0f0fb041848a297a04ff9bab06cc84b95b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sapmachine@sha256:8d5dd2010f3baf9bcc930c50d207d53bfc2381a4ae3a7f6b9ded06aa11a43d8e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sapmachine@sha256:e3ce7ca2de2cea0ec379f497495b7932261ec0ae1f4e0ed51b5525580ca17aeb
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sapmachine@sha256:32db5e4b0a42128410c34d5a6006c2645ad48b6b97558f3bf48fa05923bff717
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sapmachine@sha256:a0ecc3069610fc3d3e39dbc3e1f3b356d32b83d545441d7cd69aaff62e7525a2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sapmachine@sha256:43e3c7a41d88635b90dc85967b9ef3f0d57a37f2ebf3d78f8a0fe3489e87dec6
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sapmachine@sha256:fbca49ef41b97fbb1c25c75a40b15074b39524c29192410ac07c755948d3f950