Rust

dhi.io/rust

Rust 1.x (dev)

CIS
linux/amd64
alpine 3.24
Tags:

1-alpine-dev, 1-alpine3.24-dev, 1.96-alpine-dev, 1.96-alpine3.24-dev, 1.96.1-alpine-dev, 1.96.1-alpine3.24-dev

Index digest:

sha256:973dc1c80b20a3fed51ca6bf41c03fb5dc52ec972011876669d2628bd4bdb0e4

Manifest digest:

sha256:09df6f03e9e4eb1f9b64122a9024f5e6c5b64d5b148351e3c47830cab2ca1ea7

Size

190.18 MB

Last pushed

6 days ago

Vulnerabilities

0
2
0
0
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/rust:1-alpine-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/rust:1-alpine-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/rust@sha256:0e15027cd429d4a6375a19e71d5be714133fd7dd7b26a7f7a5df29d78ea75338
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/rust@sha256:e07b8bc7dc941d23a34dbe8f5f1cb36572becadaa1c6e1d965b2a317b5903c98
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/rust@sha256:a30a31c3a0d8e63132f8a433f5e59f41ae7bd2223ff237c09b3c4327a70975c3
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/rust@sha256:9b26567cb6784361dc7bd26e6a2a449f02b72d07b0677def5b9db3a5020943d5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/rust@sha256:a02c1f06fff750d8160cdd88a508785b543816d1bb720b26942a6fe7ffbfac9c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/rust@sha256:941ee73e3ea1b11de9aa428647e00ee09886dd06a056652e3c8a78ae9290c896
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/rust@sha256:90d88049ef3c2af70bfce1f8a767381d3867adcd6282551f3a40e8bc9de39aaa
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/rust@sha256:6288fb50e997b3799e88aaa8bfb1f79f360ce8898f40aa43ddc222f2f4f117a9
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/rust@sha256:a3da40ef2290c566babf5d1ea0dc1efebeacac98326df8bb1d5c5169c66d18db
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/rust@sha256:79cd2c72b613df117bda0b136b26e8d9faf9e596252662594ea79fe0f88fe26a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/rust@sha256:42b2035c0011cce8bb58a628bc19aff356ee69f6f5d11a6c4d64546bef45e4b2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/rust@sha256:e3bccfec12164c44b9e33f6680cb73669a84f6b1dbc4396dab9a38e854501fb5
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/rust@sha256:230039cd65a98e2046a23537c8feb44ec5ac721f5907100d661932256369036e
SPDX SBOMhttps://spdx.dev/Documentdhi.io/rust@sha256:ef03a2518ee09ddf4d5caf7bed11e8a710ef8ebca4d9e99be07aca0613129271