RabbitMQ

dhi.io/rabbitmq

RabbitMQ 4.3.x

CIS
linux/amd64
debian 13
Tags:

4, 4-debian, 4-debian13, 4.3, 4.3-debian, 4.3-debian13, 4.3.5, 4.3.5-debian, 4.3.5-debian13

Index digest:

sha256:f88cbbfb5881c93f1ac9bfb4ae1df35c733c84b5d045a383657b78dcd057988f

Manifest digest:

sha256:1b9228dfcc784ac6f63d8745f8363afd2532aaeeb18ed7e94648d0c6632b6c6f

Size

87.63 MB

Last pushed

16 hours ago

Vulnerabilities

0
0
0
2
0

Support

Ends Jul 2026

Request ELS

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rabbitmq:4

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rabbitmq:4 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rabbitmq@sha256:479ae4cc77d8a5aa6f38e314ae1076aa968d2c2b6cbf5d39268ff7716d583665
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rabbitmq@sha256:47319c5bcacbb3a49d187472f8b51bcab5f14a38fa841e1dcbd66b763470cbf3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rabbitmq@sha256:e55587f8c742fc8b5c4533a88d4109b4eecf20e1b25f179ab043686f1cfe667c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rabbitmq@sha256:049da874c1ef35ae664d87cbe3580b5e2274fe92f10b119169b8c804a438c4b3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/rabbitmq@sha256:9f9d063e6ef7934317385660b664c5d172c4920497328f06a4fbf8b33e6ea992
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rabbitmq@sha256:96b59fb4a5cd29f034378e95bdfe7ecd297a777192726ba06f7aed0961223643
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rabbitmq@sha256:3fe283fb57ca8630cb528a7247559d581bc9bc39a08f52957505891d8db98ab0
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rabbitmq@sha256:53b5132e96c65627d00ff2cc3d04a983ecf25299fc61cc2fb9733694a050c727
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rabbitmq@sha256:0714906272820f0aa672b9253a3d9e9f658fbf435f445728c0ccd19d8981b9f4
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rabbitmq@sha256:0f3404dc0d448f96e6243db71838f525f2b8ffc70152c4b0c44dad146b5d559f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rabbitmq@sha256:5fd64f7f76fd16ca406a50336c08d53a4928b48f50bcc1765b375a61cc504edd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rabbitmq@sha256:71a73f8e8f3d22407f0f6bc5cb3d55305014a49327bd65ce652079261ce7788f
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rabbitmq@sha256:f88f17055bb458ea641c90c60c1b8c0e46b86d84738e46a46f517d365a7668ce
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rabbitmq@sha256:f0b9d4bc38ef3ccf94b634fc854afa227e094b4430854c4dffd877d58860e699
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rabbitmq@sha256:feecbe2c19744fee471eb6b9c4036b38b1600b936d73c3988bccecb21a2875fd