Sign inSign up
Perl

dhi.io/perl

Perl 5.42.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

5.42-debian-fips-dev, 5.42-debian13-fips-dev, 5.42-fips-dev, 5.42.3-debian-fips-dev, 5.42.3-debian13-fips-dev, 5.42.3-fips-dev

Index digest:

sha256:d8a1173fb387c6aa66db31086431d85414b69d7da3d26f9c89217882b0117cac

Manifest digest:

sha256:629d26c2eddbf2cd96682479057151a2da00831f854f153b8a59edeb574cd42d

Size

103.97 MB

Last pushed

9 hours ago

Vulnerabilities

2
4
0
37
1

Support

Active until Jul 2028

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/perl:5.42-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/perl:5.42-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/perl@sha256:a385bca2546a59b8c4d846c69183f58b218fae871c9bcdfe350f8223e1d54d7e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/perl@sha256:11e65b90dfc3671cd116dff400db8b27e2cb46cbbcd6006287aaae9b014e4e37
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/perl@sha256:8e3967f66d36e184fe5571efd862438d4d01ba0ef1d7df329f4bdf4e1e9f03fb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/perl@sha256:0d3e283fc87bf468d448cbee1823dfeca0488d0e19c6feabef784a4cf1505d6a
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/perl@sha256:9da097527c87e49288f2fbc5070b2a1415aec60c47dd1acc61c8fc2812f02b18
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/perl@sha256:b5085ad2b9433ad0e90729737d91e55a3f8363ee41fb0420cf0304af9525182f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/perl@sha256:684619e40f8464846419560914fcd14bb7f74e00d254e5e1da26896af638981a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/perl@sha256:229e893c9d13605b813804c3f6fc6305e91e005f839dd7814376ef15a67a2ca4
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/perl@sha256:a6718d5e5f84ed561557f63f28df635785a80bac25da55d7f069039050fb3b9c
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/perl@sha256:abf53d8bf71dc3a5521c2501fee85705750188cadcb837fba61bc79bd6016aba
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/perl@sha256:94d458ae25ec7ac61ba3b86de3c2c08d5232168c6c7bb6fa18e475896658ebd2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/perl@sha256:cd5d6998a971babd76d7f3ee3e5f5df3cb6a93a5f5dc87e09899bd19f741bb7a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/perl@sha256:f5b0e5a76d578a7a96b68ebfc3d3dcc7690e14dd3e2aab73584c46dcf88d6dc6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/perl@sha256:b365f4f60d81ad22f6f97943ff89b330ea11272a1fa7c076ffe81dfd60a6f4d1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/perl@sha256:e521f9af1aba6e89c9cb9c89f089a561fda2e54ce8fb8c258d519525837c53a2
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/perl@sha256:014fcc2a4f3a94862ddd2fa5dfc6f122512e436ff4ba6d8c43838d63c99a1005
SPDX SBOMhttps://spdx.dev/Documentdhi.io/perl@sha256:a9888252339865d3c49fe4b80f2f0e53e6c8e575c33f22dd9dc169ae46d40825