You can use boolean logic (e.g. AND/OR/NOT) for complex search queries. For more help and examples, see the search documentation.
Search by package name:
my-package
(implicit)
name:my-package
(explicit)
Search by package filename:
my-package.ext
(implicit)
filename:my-package.ext
(explicit)
Search by package tag:
latest
(implicit)
tag:latest
(explicit)
Search by package version:
1.0.0
(implicit)
version:1.0.0
(explicit)
prerelease:true
(prereleases)
prerelease:false
(no prereleases)
Search by package architecture:
architecture:x86_64
Search by package distribution:
distribution:el
Search by package license:
license:MIT
Search by package format:
format:deb
Search by package status:
status:in_progress
Search by package file checksum:
checksum:5afba
Search by package security status:
severity:critical
Search by package vulnerabilities:
vulnerabilities:>1
vulnerabilities:<1000
Search by # of package downloads:
downloads:>8
downloads:<100
Search by package type:
type:binary
type:source
Search by package size (bytes):
size:>50000
size:<10000
Search by dependency name/version:
dependency:log4j
dependency:log4j=1.0.0
dependency:log4j>1.0.0
Search by uploaded date:
uploaded:>"1 day ago"
uploaded:<"August 14, 2022 EST"
Search by entitlement token (identifier):
entitlement:3lKPVJPosCsY
Search by policy violation:
policy_violated:true
deny_policy_violated:true
license_policy_violated:true
vulnerability_policy_violated:true
Search by repository:
repository:repo-name
Search queries for all Debian-specific (and related) package types
Search by component:
deb_component:unstable
Search queries for all Maven-specific (and related) package types
Search by group ID:
maven_group_id:org.apache
Search queries for all Docker-specific (and related) package types
Search by image digest:
docker_image_digest:sha256:7c5..6d4
(full hashref only)
Search by layer digest:
docker_layer_digest:sha256:4c4..ae4
(full hashref only)
Field type modifiers (depending on the type, you can influence behaviour)
For all queries, you can use:
~foo
for negation
For string queries, you can use:
^foo
to anchor to start of term
foo$
to anchor to end of term
foo*bar
for fuzzy matching
For number/date or version queries, you can use:
>foo
for values greater than
>=foo
for values greater / equal
<foo
for values less than
<=foo
for values less / equal
Need a secure and centralised artifact repository to deliver Alpine,
Cargo,
CocoaPods,
Composer,
Conan,
Conda,
CRAN,
Dart,
Debian,
Docker,
Go,
Helm,
Hex,
LuaRocks,
Maven,
npm,
NuGet,
P2,
Python,
RedHat,
Ruby,
Swift,
Terraform,
Vagrant,
Raw & More packages?
Cloudsmith is the new standard in Package / Artifact Management and Software Distribution.
With support for all major package formats, you can trust us to manage your software supply chain.
![tetrate](https://users.cloudsmith.media/avatars/vanirdHLzncx_917f8d40f67e9602ca10157cd8ad24f205dce302.png)
app_sidecar_centos_7
98b7855550e579c8c7dc1e2ff47…
One-liner (summary)
Description
This package was uploaded with the following V2 Distribution manifest:
{
"schemaVersion": 2,
"mediaType": "application/vnd.docker.distribution.manifest.v2+json",
"config": {
"mediaType": "application/vnd.docker.container.image.v1+json",
"size": 5132,
"digest": "sha256:19417ec14d840023b65273e2713f45394496903d2ff563a2b4dc6bb03da69608"
},
"layers": [
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 76097157,
"digest": "sha256:2d473b07cdd5f0912cd6f1a703352c82b512407db6b05b43f2553732b55df3bc"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 9185948,
"digest": "sha256:86019dc8b72adbac27563600803bf6a7467aca66feefe506352c5f3cdbdbcd6d"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 4682,
"digest": "sha256:6c5e25ffee3057512d374710a7417aa1d42cec871e26fa05aedefda0c7fee28f"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 16647,
"digest": "sha256:e899c639b09368130a4535660ecdfa7af3aca0d66968ba56660438f68b0453e6"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 3022,
"digest": "sha256:24f7801e0e984726e647280d4fd80969b109bb8daf5198f5226f40175ae71019"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 37899169,
"digest": "sha256:a449047ec260de6845b16a5aa7426b75affd848796fc514ec84a6225962669ac"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 45614207,
"digest": "sha256:c3c909f1fe8bd45db6d53470b817aaa6799df27b441dd97220ec42977e8eedac"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 2115,
"digest": "sha256:f20d083ecfa43f8fba9a20e2af69bea8193db6f33c2ba1e65f66b3655a2782d2"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 773,
"digest": "sha256:cb33259e98b1cf216f08803365644345ad8525b5d453c3437d2ea131382fb1c1"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 8882597,
"digest": "sha256:c0885a9371677b6b74590ca54243fc188e0a5db35c50954bef439c7ef37a4841"
},
{
"mediaType": "application/vnd.docker.image.rootfs.diff.tar.gzip",
"size": 16883820,
"digest": "sha256:71663a9984b68c31355321bf62285f57b07f80c9de9cb01403b4bc8ac6f61c26"
}
]
}
Digest:
sha256:2d473b07cdd5f0912cd6f1a703352c82b512407db6b05b43f2553732b55df3bc
Command: /bin/sh -c #(nop) ADD file:b3ebbe8bd304723d43b7b44a6d990cd657b63d93d6a2a9293983a30bfc1dfa53 in / |
72.6 MB | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: /bin/sh -c #(nop) LABEL org.label-schema.schema-version=1.0 org.label-schema.name=CentOS Base Image org.label-schema.vendor=CentOS org.label-schema.license=GPLv2 org.label-schema.build-date=20201113 org.opencontainers.image.title=CentOS Base Image org.opencontainers.image.vendor=CentOS org.opencontainers.image.licenses=GPL-2.0-only org.opencontainers.image.created=2020-11-13 00:00:00+00:00 |
32 bytes | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: /bin/sh -c #(nop) CMD ["/bin/bash"] |
32 bytes | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: ARG VM_IMAGE_VERSION=8 |
32 bytes | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: RUN |1 VM_IMAGE_VERSION=7 /bin/sh -c if [ "${VM_IMAGE_VERSION}" = "8" ]; then sed -i -e "s|mirrorlist=|#mirrorlist=|g" -e "s|#baseurl=http://mirror.centos.org|baseurl=https://vault.centos.org|g" /etc/yum.repos.d/CentOS-Linux-* ; fi # buildkit |
32 bytes | ||
Digest:
sha256:86019dc8b72adbac27563600803bf6a7467aca66feefe506352c5f3cdbdbcd6d
Command: RUN |1 VM_IMAGE_VERSION=7 /bin/sh -c yum install -y iptables iproute sudo ca-certificates && update-ca-trust && yum clean all && rm -rf /var/cache/yum # buildkit |
8.8 MB | ||
Digest:
sha256:6c5e25ffee3057512d374710a7417aa1d42cec871e26fa05aedefda0c7fee28f
Command: RUN |1 VM_IMAGE_VERSION=7 /bin/sh -c useradd -m --uid 1338 application && echo "application ALL=NOPASSWD: ALL" >> /etc/sudoers # buildkit |
4.6 KB | ||
Digest:
sha256:e899c639b09368130a4535660ecdfa7af3aca0d66968ba56660438f68b0453e6
Command: COPY certs/ /var/lib/istio/ # buildkit |
16.3 KB | ||
Digest:
sha256:24f7801e0e984726e647280d4fd80969b109bb8daf5198f5226f40175ae71019
Command: COPY certs/default/* /var/run/secrets/istio/ # buildkit |
3.0 KB | ||
Digest:
sha256:a449047ec260de6845b16a5aa7426b75affd848796fc514ec84a6225962669ac
Command: COPY istio-sidecar-centos-7.rpm /tmp/istio-sidecar-centos-7.rpm # buildkit |
36.1 MB | ||
Digest:
sha256:c3c909f1fe8bd45db6d53470b817aaa6799df27b441dd97220ec42977e8eedac
Command: RUN /bin/sh -c rpm -vi /tmp/istio-sidecar-centos-7.rpm && rm /tmp/istio-sidecar-centos-7.rpm # buildkit |
43.5 MB | ||
Digest:
sha256:f20d083ecfa43f8fba9a20e2af69bea8193db6f33c2ba1e65f66b3655a2782d2
Command: RUN /bin/sh -c echo "istio-proxy ALL=NOPASSWD: ALL" >> /etc/sudoers # buildkit |
2.1 KB | ||
Digest:
sha256:cb33259e98b1cf216f08803365644345ad8525b5d453c3437d2ea131382fb1c1
Command: COPY echo-start.sh /usr/local/bin/echo-start.sh # buildkit |
773 bytes | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: ARG TARGETARCH |
32 bytes | ||
Digest:
sha256:c0885a9371677b6b74590ca54243fc188e0a5db35c50954bef439c7ef37a4841
Command: COPY amd64/client /usr/local/bin/client # buildkit |
8.5 MB | ||
Digest:
sha256:71663a9984b68c31355321bf62285f57b07f80c9de9cb01403b4bc8ac6f61c26
Command: COPY amd64/server /usr/local/bin/server # buildkit |
16.1 MB | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: RUN |1 TARGETARCH=amd64 /bin/sh -c chmod +x /usr/local/bin/client /usr/local/bin/server # buildkit |
32 bytes | ||
Digest:
sha256:a3ed95caeb02ffe68cdd9fd84406680ae93d633cb16422d00e8a7c22955b46d4
Command: ENTRYPOINT ["/usr/local/bin/echo-start.sh"] |
32 bytes |
Security Scanning:
You can't see this because your subscription doesn't include this feature, sorry!
With Security Scanning, Cloudsmith will scan your artifacts for vulnerabilities when they're uploaded. These are then presented to you via the UI and the API, so that you can build rules into your CI/CD pipelines to decide how to handle low, medium, high and critical software vulnerabilities.
If you'd like to trial or ask about the Security Scanning feature, just ask us. We'll be happy to help!
Last scanned
2 weeks ago
Scan result
Vulnerable
Vulnerability count
5
Max. severity
MediumTarget: | ||
MEDIUM |
CVE-8456-61396: library: vulnerability titlePackage Name: package_name Installed Version: 1.3.48 Fixed Version: 2.8.67 References: www.villanueva.com arias.com www.fitzpatrick.com |
|
MEDIUM |
CVE-7070-89729: library: vulnerability titlePackage Name: package_name Installed Version: 1.7.79 Fixed Version: 2.6.95 References: www.randolph-wright.com www.larsen.com contreras.com |
|
MEDIUM |
CVE-9976-21619: library: vulnerability titlePackage Name: package_name Installed Version: 1.3.29 Fixed Version: 2.5.6 References: www.oliver-miller.com www.casey.biz hickman-mosley.info |
|
MEDIUM |
CVE-3598-38538: library: vulnerability titlePackage Name: package_name Installed Version: 1.10.87 Fixed Version: 2.1.84 References: garcia-martinez.com www.hebert.info www.cole.com |
|
MEDIUM |
CVE-5254-24557: library: vulnerability titlePackage Name: package_name Installed Version: 1.3.13 Fixed Version: 2.7.86 References: www.craig.info clark.com silva.info |
These instructions assume you have setup the repository first (or read it).
To pull app_sidecar_centos_7 @ reference/tag sha256:98b7855550e579c8c7dc1e2ff47e353470b37acf22b6fca828a5b19ee3c42b07:
docker pull containers.istio.tetratelabs.com/app_sidecar_centos_7@sha256:98b7855550e579c8c7dc1e2ff47e353470b37acf22b6fca828a5b19ee3c42b07
You can also pull the latest version of this image (if it exists):
docker pull containers.istio.tetratelabs.com/app_sidecar_centos_7:latest
To refer to this image after pulling in a Dockerfile, specify the following:
FROM containers.istio.tetratelabs.com/app_sidecar_centos_7@sha256:98b7855550e579c8c7dc1e2ff47e353470b37acf22b6fca828a5b19ee3c42b07