RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x (dev)

CIS
linux/amd64
debian 13
Tags:

4-debian-dev, 4-debian13-dev, 4-dev, 4.3-debian-dev, 4.3-debian13-dev, 4.3-dev, 4.3.5-debian-dev, 4.3.5-debian13-dev, 4.3.5-dev

Index digest:

sha256:c31e6d6ac0da5b11e65e5e4f4981dcbd9b08e96fd3d36d9ba8164f7177caa898

Manifest digest:

sha256:299423ccabc6523707acd1b9a67988a315baa34623cdf05807fdb460ad310a00

Size

99.64 MB

Last pushed

1 day ago

Vulnerabilities

2
2
3
4
3

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4-debian-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4-debian-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:57248b06d644c19a9510ba1edeb254811702f84ab2dc196f54045ee908a3fd03
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:e282ab863f8bdb90b6e6b8775b98a194f2e7dfdb39c06d36fb8c50b18eedf651
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:e8cf267a0900e97488b75dc51f855496906417da85aeff8cfad4ecbcd7884e51
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:2fa76f41842b48e38fa6ea5671a4cb55281dd897eae5dcb3f8ec197191cb056f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:0ea6dce745ce12ba5c2761c14f5b592dc77472ae5b801656c45b831e85e0e6cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:b536ab66f214a6e2ac9220ca22d1a25b203aeb66a4ed1ec61dc23e0e3c922de4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:7194ecf9d11878943224449416145cc429469d4558b5e6ea7b63d84e3eb31327
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:1edb3c13492553b6ec98fd6559c410108c8133cce723a5d594bc5534650c64c2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:fed1a20ccee9ea123fbcf3d1fd9c34fafe36a59fae71f49405c1a6439cb432ba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:c7dcba3a94c3024c9b3c04c5b6a9c213998483516fcf962b895929702d374f22
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:ebc934ecff6306b188f95ce11945fa33858cf601805779d87094fc7a140e6ce8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:ef6dcd4851aabcc3637e3e34d1a8edad6f651d4178afc1e99d0c9a6185345a6a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:8fede912f51c31090f5cb05c4f656255d060578515dbd5b30763a0b218c54abc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:2def3e124bd40b9997cc4854ca059ae15c238ef34259fd60524048d9f29c1a20
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:3abebd0c9dbea2c2ecdd8aedbbb7cc126b63a45892dcd0f90a86281b2a9f49e5