{
	"SPDXID":"SPDXRef-DOCUMENT",
	"name":"attest-tools-0.0.2.92-7.oe2409.aarch64.rpm",
	"spdxVersion":"SPDX-2.2",
	"creationInfo":{
		"created":"2024-09-30T03:30:07.5589037Z",
		"creators":"[openeuler_creator]"
	},
	"dataLicense":"CC0-1.0",
	"documentNamespace":"https://repo.openeuler.org/security/data/sbom/attest-tools-0.0.2.92-7.oe2409.aarch64.rpm",
	"packages":[
		{
			"SPDXID":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-77b3f233-d28a-4c36-bb9e-ff0ae112ef87",
			"name":"bash",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"0648f5dde35fc9fcf57a6a9c95dae3273cbb784ba492931ff20874906827ed39"
				}
			],
			"description":"Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/bash@5.2.21-1.oe2409?arch=aarch64&epoch=0&upstream=bash-5.2.21-1.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/bash",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"It is the Bourne Again Shell",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:5.2.21-1.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-a7aac76f-0363-424a-b87d-dcb610055472",
			"name":"coreutils",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"2f5af68ccffa26a602437b1920467462bfd75facc2bb18bdc2fd9140eb7dc702"
				}
			],
			"description":"These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/coreutils@9.5-4.oe2409?arch=aarch64&epoch=0&upstream=coreutils-9.5-4.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/coreutils/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A set of basic GNU tools commonly used in shell scripts",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:9.5-4.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-curl-8.4.0-b8a3567c-51c1-4d84-82fe-7cb07098c4a2-9750ec63-75b1-4b90-9184-b3a56b0fa67e",
			"name":"curl",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"ae8840beb67e37b4f5509746bd6495785a32141c3b4bd5dfdec442b94c136ffd"
				}
			],
			"description":"cURL is a computer software project providing a library (libcurl) and\ncommand-line tool (curl) for transferring data using various protocols.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/curl@8.4.0-10.oe2409?arch=aarch64&epoch=0&upstream=curl-8.4.0-10.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://curl.se/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Curl is used in command lines or scripts to transfer data",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:8.4.0-10.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-digest-list-tools-0.3.95-1d64ab55-8f1e-421e-a295-d505bb590989-a9a77025-8b07-4ceb-8995-c0c3f17c93e3",
			"name":"digest-list-tools",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"7521e540873d75886febf67a31381e67ae850e1560b4fe5bc72bb5ffdcda6b00"
				}
			],
			"description":"This package includes the tools for configure the IMA Digest Lists extension.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/digest-list-tools@0.3.95-15.oe2409?arch=aarch64&epoch=0&upstream=digest-list-tools-0.3.95-15.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://gitee.com/openeuler/digest-list-tools",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Utilities for IMA Digest Lists extension",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:0.3.95-15.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-1c929e86-ef7e-4388-b32b-950553f1c66b",
			"name":"glibc",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"f83727d5acc81f8f92521d78f89a59332782c39c8e4d98151505e6bc01fdca98"
				}
			],
			"description":"The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/glibc@2.38-34.oe2409?arch=aarch64&epoch=0&upstream=glibc-2.38-34.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.gnu.org/software/glibc/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"The GNU libc libraries",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.38-34.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-json-c-0.17-e035c68f-ec92-4b08-92d0-cbaf51612103-023f27c2-9a45-440f-8e2d-e48c6fe923fd",
			"name":"json-c",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"a097297c8c2dcd0d761f3762140929837eb38fa73864e8c8435bc3bcaa104564"
				}
			],
			"description":"JSON-C implements a reference counting object model that allows you\nto easily construct JSON objects in C, output them as JSON formatted\nstrings and parse JSON formatted strings back into the C representation\nof JSON objects.  It aims to conform to RFC 7159.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/json-c@0.17-3.oe2409?arch=aarch64&epoch=0&upstream=json-c-0.17-3.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/json-c/json-c",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"JSON implementation in C",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:0.17-3.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-libcurl-8.4.0-dd1f7e12-03ac-4061-a30b-892fc15353db-93d0d52e-1bb5-45d7-a458-dfe0bf482b04",
			"name":"libcurl",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"8a4146b16a44d1cb6dc77162ee1c9bec31aca0454e89eb870073c3f2d27ac553"
				}
			],
			"description":"A library for getting files from web servers.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/libcurl@8.4.0-10.oe2409?arch=aarch64&epoch=0&upstream=curl-8.4.0-10.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://curl.se/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A library for getting files from web servers",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:8.4.0-10.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-openssl-libs-3.0.12-cdb45ffd-7c49-4f85-86a4-f448e6eac4c8-19d9c8c1-79c2-4db1-b110-e11cc538ab17",
			"name":"openssl-libs",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"fe8a21dc03d6c950264c4aa621ea0c4145da06ac2541c987a442ec2c8af13cfe"
				}
			],
			"description":"The openssl-libs package contains the libraries that are used\nby various applications which support cryptographic algorithms\nand protocols.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/openssl-libs@3.0.12-8.oe2409?arch=aarch64&epoch=1&upstream=openssl-3.0.12-8.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.openssl.org/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A general purpose cryptography library with TLS implementation",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"1:3.0.12-8.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-openssl-tpm2-engine-2.4.2-bc0c8dac-37ed-430f-997e-fb142f2cecd1-6d09cb70-6b3a-4f43-b676-a164922da41e",
			"name":"openssl_tpm2_engine",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"856a12c1a508cdde7aa9e7c20add42d7366fd31463a11feadda882903bc39fbf"
				}
			],
			"description":"This package contains a plugin a for OpenSSL which connects it with the\nTrusted Platform Module version 2.0 found on newer machines and a\ncreate_tpm2_key helper binary to create and extract a TPM key.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/openssl_tpm2_engine@2.4.2-2.oe2409?arch=aarch64&epoch=0&upstream=openssl_tpm2_engine-2.4.2-2.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://git.kernel.org/pub/scm/linux/kernel/git/jejb/openssl_tpm2_engine.git/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"OpenSSL TPM 2.0 interface engine plugin",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.4.2-2.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-tss2-1470-a8ca10bd-38eb-49e6-ad41-eff9f7cf6d76-93f18387-4b8e-49c2-a0cc-d2b6a36b8e87",
			"name":"tss2",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"3c612dfa12c2697b3cf797452f61290107f654a399248f2547923b79d2731c62"
				}
			],
			"description":"TSS2 is a user space Trusted Computing Group's Software Stack (TSS) for\nTPM 2.0.  It implements the functionality equivalent to the TCG TSS\nworking group's ESAPI, SAPI, and TCTI layers (and perhaps more) but with\na hopefully far simpler interface.\n\nIt comes with about 80 \"TPM tools\" that can be used for rapid prototyping,\neducation and debugging.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/tss2@1470-3.oe2409?arch=aarch64&epoch=0&upstream=tss2-1470-3.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://sourceforge.net/projects/ibmtpm20tss/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"IBM's TCG Software Stack (TSS) for TPM 2.0 and related utilities",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:1470-3.oe2409"
		}
	],
	"relationships":[
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-77b3f233-d28a-4c36-bb9e-ff0ae112ef87"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-a7aac76f-0363-424a-b87d-dcb610055472"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-curl-8.4.0-b8a3567c-51c1-4d84-82fe-7cb07098c4a2-9750ec63-75b1-4b90-9184-b3a56b0fa67e"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-digest-list-tools-0.3.95-1d64ab55-8f1e-421e-a295-d505bb590989-a9a77025-8b07-4ceb-8995-c0c3f17c93e3"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-1c929e86-ef7e-4388-b32b-950553f1c66b"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-json-c-0.17-e035c68f-ec92-4b08-92d0-cbaf51612103-023f27c2-9a45-440f-8e2d-e48c6fe923fd"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-libcurl-8.4.0-dd1f7e12-03ac-4061-a30b-892fc15353db-93d0d52e-1bb5-45d7-a458-dfe0bf482b04"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-openssl-libs-3.0.12-cdb45ffd-7c49-4f85-86a4-f448e6eac4c8-19d9c8c1-79c2-4db1-b110-e11cc538ab17"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-openssl-tpm2-engine-2.4.2-bc0c8dac-37ed-430f-997e-fb142f2cecd1-6d09cb70-6b3a-4f43-b676-a164922da41e"
		},
		{
			"spdxElementId":"SPDXRef-rpm-attest-tools-0.2.92-6a64e03f-a78e-4d38-b1da-ead8ceb12520",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-tss2-1470-a8ca10bd-38eb-49e6-ad41-eff9f7cf6d76-93f18387-4b8e-49c2-a0cc-d2b6a36b8e87"
		}
	]
}