cve-dashboard: package-cve events #149
Closed
Chainguard Enforce / Enforce - Commit Signing
succeeded
Feb 3, 2025 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 539555665878041153754004287065989901105452997190 (0x5e828348fc076180372320ae9df51e55b30eda46)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Feb 2 17:02:05 2025 UTC
Not After : Feb 2 17:12:05 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
4e:5e:11:e6:da:8c:92:62:43:94:dd:d4:8a:72:f2:
f0:b8:b9:16:9a:ce:bd:3b:47:51:c6:40:cb:ca:a8:
fa:19
Y:
d5:b0:a6:d5:e0:89:1c:51:c4:92:8f:7b:e4:07:c1:
8c:1d:9e:6a:4d:76:7a:4c:cc:db:7d:63:fc:12:92:
d8:76
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
07:A3:99:29:1E:FD:61:D1:34:2B:19:96:8B:54:91:52:67:8F:F9:C4
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABlMecvnwAAAQDAEYwRAIgOhBvKQlLDS5CnXZj1i33kyYr43yn0kZbK4y5th4e0kUCIAMOF/ueKPr/+bwKa5YZMIISgXsmc4BQTec4NQwmGBfy
Signature Algorithm: ECDSA-SHA384
30:65:02:30:2a:c9:53:08:7c:7f:a9:87:03:fa:df:8e:b4:f6:
3f:d6:ba:91:35:96:08:43:cd:01:1a:dc:93:7b:61:7c:ea:f1:
57:c3:0f:c1:59:0e:3a:4a:14:55:ca:d1:39:a0:c5:d0:02:31:
00:85:c5:4f:87:f1:12:35:55:73:20:59:14:fa:9b:03:03:79:
ca:dd:85:9f:44:7d:ab:6e:6c:af:19:60:58:7e:8f:eb:a6:88:
46:bd:67:38:35:5e:bf:b2:7a:35:27:29:c9
Rekor Entry
{
"body": "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",
"integratedTime": 1738515726,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 168014546,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n46341873\nxCGPX2JZIJLpgJSN3ByqWSDuC5AUlRR2iUXphseOnp0=\n\n— rekor.sigstore.dev wNI9ajBFAiADBm+o/K7CgJcIGK1lfy4tADCMwcY+RqJbzHKXIrb3YQIhAOAa5QDa87dINp0LUxgjUcPHvM9Qq3XxDEpEP7nMVnCk\n",
"hashes": [
"bc29c5951173d4b0d21f4434ac627038cd819ed5229ccad0236691bd0416044b",
"925ae0eaa455919f4689e54d09d9d410e3bcb824be8cc57ee39d9ec39b0acdfb",
"98bf198da71fb5a2cc7dbc3525043a8b01377dde2a80ed3581ca94002fe7de06",
"4b042c63da9c5111afe823b7c5f3de7263ed737ad1bd0d67c8b1a8f3aa9c9dda",
"39b82122f23048d3a18c0f8f21d133b8c0763a431ae487d683e946f00f5d7dc3",
"1842783483205c20d6118fe0c0470f7c22ffeb27b0398a854f8a7142091a94d9",
"51142094b672d5d7bdfcd19f9058159e5197a2991d6f70440ada613942eadbad",
"ff488265c57f9222c4f8bba6709ca8efc1a2b81a50fa79be80c3193568e82a3e",
"24ad32b6732705ea43a781ed02cfb1905a9f39aebf0eb6531ed8e5daf92aeee6",
"9859191f7c9681a9524bfe89de2507e703cfc099e762aae627950b63d463db26",
"7b966ec1cf3e941e912f5354158d0feb9ef4207222a8d12248468b2e4379dc51",
"3d7e636e79ce4fcef59bd0425312f3015132ce43fc60147030f01fa48c955b94",
"015d86b6064ab51f403dd477a5c35f23059cee752b0f2a7c8a1e13120652aed2",
"62c55745d36a186f1f6bdcfb88ef2b17c1a460b070e10fa0e8f1bd53041d57f0",
"326829fd94bcbe3dc3832cbbc8978e017b5ea8a2deb7784bfae0958be783044f",
"d4306a6d6cc04cf94a260cea877fae4bf73eda64c1628e8976251dac44c99ef0",
"3a5deee59a8598365620051ada1abf97d485cd69cda63b7f99fb79aa4bf1a734",
"0891b5f16f672ea83e89c186685bd03c4d398a20448146978a88692378f93413",
"809162797e9ca0083278e4ce4b392d4c001947b655e3ff6d59fbff79d3c18e75",
"90257d8a08e9b2be850e1f481b8b63434b727aa88697b2fc06c0117c54b8947a",
"aa094e800a94a78a3bf35f1a133191e7bf3aaadf569851ebeb0e6a19291dc563",
"5980b2c649b79cbb8de8cb9b06218663d6794ebcbf33882588724aed5328ed5e",
"71dffac5fb67839db8e7fb619fb83ffb5f8c590d0fa7512d293ebad211f178e2",
"8d4f7eb608d320a51819e53b4fb463ab22fe17e80557db427705f6199d54b50b",
"bde9b268c8f435ad4b3236c1ffd0e692af13fa301bde8fb20844a001ac940015"
],
"logIndex": 46110284,
"rootHash": "c4218f5f62592092e980948ddc1caa5920ee0b90149514768945e986c78e9e9d",
"treeSize": 46341873
},
"signedEntryTimestamp": "MEUCIAxRgADQy8IiIwRyrK5bRvjWZzBhSqJum6NuHb2y4E38AiEA1KosSE5JgcGUGwQcZ37xS1mFM9Cshu5NuDS4KohH5EA="
}
}
Loading