Sign inSign up
vSphere CSI Driver

dhi.io/vsphere-csi-driver

vSphere CSI Driver 3.7.x

CIS
linux/amd64
debian 13
Tags:

3, 3-debian, 3-debian13, 3.7, 3.7-debian, 3.7-debian13, 3.7.3, 3.7.3-debian, 3.7.3-debian13

Index digest:

sha256:0e8c8e9304ee3fd7b9ca9785477d9466a262bdfde4bf28029f1946ab2ac3d13e

Manifest digest:

sha256:ba745de854327a3fb259cb9e4cc05efa0b9e769b38a885a71452db1aba2b7c27

Size

61.14 MB

Last pushed

21 hours ago

Vulnerabilities

0
1
2
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/vsphere-csi-driver:3

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/vsphere-csi-driver:3 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/vsphere-csi-driver@sha256:5dc25f21b09a47fc49272826cbbfd603aeaa833aa97315821101708b840ab156
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/vsphere-csi-driver@sha256:e13458e9df2dc3974191240827330bbbefc503b7648c9a6eacd346dfb8208ff9
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/vsphere-csi-driver@sha256:db6ed88d93e317e711ff4ac77a004e68022756aaf91b30afb54134a404aa27df
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/vsphere-csi-driver@sha256:da5a6812d2f1077cb8c326081683064a40da87e18457d18756fd901f4a3d1a2e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/vsphere-csi-driver@sha256:10a567b71576a0c45a92ab6a3b9b48b04ee4d4317ab08d191becc7ae9b3751aa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/vsphere-csi-driver@sha256:a80a4af99096f773e6150c9cb0a01b4eea360ba763956b25f958486ae3cbccf3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/vsphere-csi-driver@sha256:f57e85c3a109b0cc27eac565b6a095e423b9d2c06eeabaf0aaf7933882b518ac
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/vsphere-csi-driver@sha256:649e347d7d243025686796a863653472a0dc304f33f0b77aaff59c7107758453
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/vsphere-csi-driver@sha256:db479ec94537193075d349074709645f178bddb969f65f28fd66641a4d7758c3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/vsphere-csi-driver@sha256:33b992da2a940ae8916263d0296646148c1c74c4b0ed28a24a2ef3835a756c52
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/vsphere-csi-driver@sha256:29b888c37a510f06e0ab623ee929edacf3b98135fb961f35db70a868e65e553d
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/vsphere-csi-driver@sha256:9f2466c2ac52f51c11edcb1456eff336a3d34e0b8b1b86cb735b40afc5db8956
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/vsphere-csi-driver@sha256:321e1033a215e48ae8d55af3341b293533d914a471594befec91d4872071c350
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/vsphere-csi-driver@sha256:dd81f530cb2627a7e87ab709587176bd385b8ee78ee824d5b572503be3857db8
SPDX SBOMhttps://spdx.dev/Documentdhi.io/vsphere-csi-driver@sha256:4650aebbf58383a83edd0585a964a8258627168b04340570fce68ee44007a4bc