{
	"SPDXID":"SPDXRef-DOCUMENT",
	"name":"clevis-0.20-1.oe2409.aarch64.rpm",
	"spdxVersion":"SPDX-2.2",
	"creationInfo":{
		"created":"2024-09-30T03:30:07.5589037Z",
		"creators":"[openeuler_creator]"
	},
	"dataLicense":"CC0-1.0",
	"documentNamespace":"https://repo.openeuler.org/security/data/sbom/clevis-0.20-1.oe2409.aarch64.rpm",
	"packages":[
		{
			"SPDXID":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-c50fca3c-9b11-42d4-98a4-ff8238c6771d",
			"name":"bash",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"0648f5dde35fc9fcf57a6a9c95dae3273cbb784ba492931ff20874906827ed39"
				}
			],
			"description":"Bash is the GNU Project's shell. Bash is the Bourne Again SHell. Bash is an sh-compatible\nshell that incorporates useful features from the Korn shell (ksh) and C shell (csh). It is\nintended to conform to the IEEE POSIX P1003.2/ISO 9945.2 Shell and Tools standard. It offers\nfunctional improvements over sh for both programming and interactive use. In addition, most\nsh scripts can be run by Bash without modification.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/bash@5.2.21-1.oe2409?arch=aarch64&epoch=0&upstream=bash-5.2.21-1.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/bash",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"It is the Bourne Again Shell",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:5.2.21-1.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-9fd1e3fa-9cd4-40bc-94eb-658ea20750f4",
			"name":"coreutils",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"2f5af68ccffa26a602437b1920467462bfd75facc2bb18bdc2fd9140eb7dc702"
				}
			],
			"description":"These are the GNU core utilities.  This package is the combination of\nthe old GNU fileutils, sh-utils, and textutils packages.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/coreutils@9.5-4.oe2409?arch=aarch64&epoch=0&upstream=coreutils-9.5-4.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.gnu.org/software/coreutils/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A set of basic GNU tools commonly used in shell scripts",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:9.5-4.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-cryptsetup-2.6.1-b31dae9a-f72d-4a40-b8ab-8bf31499ecb3-5db2106d-44d7-4a87-b3db-a2583c0e0f86",
			"name":"cryptsetup",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"55cb31054a3d59b5746ed31cbc37d9d9c5719c6635859f0ec6f133e1cfda23fe"
				}
			],
			"description":"cryptsetup is a utility used to conveniently set up disk encryption based\non the DMCrypt kernel module.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/cryptsetup@2.6.1-2.oe2409?arch=aarch64&epoch=0&upstream=cryptsetup-2.6.1-2.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://gitlab.com/cryptsetup/cryptsetup",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Utility used to conveniently set up disk encryption",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.6.1-2.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-curl-8.4.0-b8a3567c-51c1-4d84-82fe-7cb07098c4a2-b93ed9e8-7dd3-481c-8295-5821ad307157",
			"name":"curl",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"ae8840beb67e37b4f5509746bd6495785a32141c3b4bd5dfdec442b94c136ffd"
				}
			],
			"description":"cURL is a computer software project providing a library (libcurl) and\ncommand-line tool (curl) for transferring data using various protocols.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/curl@8.4.0-10.oe2409?arch=aarch64&epoch=0&upstream=curl-8.4.0-10.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://curl.se/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"Curl is used in command lines or scripts to transfer data",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:8.4.0-10.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-92c6c09c-4b5c-4126-b625-f5a766c1b6e5",
			"name":"glibc",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"f83727d5acc81f8f92521d78f89a59332782c39c8e4d98151505e6bc01fdca98"
				}
			],
			"description":"The GNU C Library project provides the core libraries for the GNU system and\nGNU/Linux systems, as well as many other systems that use Linux as the kernel.\nThese libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD,\nOS-specific APIs and more. These APIs include such foundational facilities as\nopen, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt,\n login, exit and more.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/glibc@2.38-34.oe2409?arch=aarch64&epoch=0&upstream=glibc-2.38-34.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.gnu.org/software/glibc/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"The GNU libc libraries",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.38-34.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-jansson-2.14-7baf4fe1-f507-45c9-8c5a-e14c735df829-ed88ba0b-bfc6-42a8-9764-64a94d1bc70b",
			"name":"jansson",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"9b8e2189237dc0d8bd84c947c72ea0a47cc9992ea0e309303af9f3016868551e"
				}
			],
			"description":"Jansson is a C library for encoding, decoding and manipulating JSON data.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/jansson@2.14-5.oe2409?arch=aarch64&epoch=0&upstream=jansson-2.14-5.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"http://www.digip.org/jansson/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A C library for encoding, decoding and manipulating JSON data",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:2.14-5.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-jose-14-cd2b0709-6f00-4427-98ad-f2eb9a0563aa-de7bb7cc-8abb-495f-92d9-a52351c4fe6c",
			"name":"jose",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"48a653616cbc24100bbc5ec425af3bc490020b4b2fcc7ed323a8ee6b6f424374"
				}
			],
			"description":"José is a C-language implementation of the Javascript Object\nSigning and Encryption standards. José provides a command-line\nutility which encompasses most of the JOSE features. This allows\nfor easy integration into your project and one-off scripts.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/jose@14-1.oe2409?arch=aarch64&epoch=0&upstream=jose-14-1.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/latchset/jose",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"José is a command line utility for performing various tasks on JSON  objects",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:14-1.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-luksmeta-9-6fc19903-e925-47bc-8c50-8860811fbd23-53c22ea5-cd0c-4c9b-99ba-bbbaf6b805a9",
			"name":"luksmeta",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"fce75cf7d0c4651e25f97278024580e8e81940ac661db81b013417254ff166a1"
				}
			],
			"description":"LUKSMeta is a simple library for storing metadata in the LUKSv1 header. Some projects need\nto store additional metadata about a LUKS volume that is accessable before unlocking it.\nFortunately, there is a gap in the LUKS header between the end of the slot area and the\npayload offset, LUKSMeta uses this hole to store additional metadata.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/luksmeta@9-5.oe2409?arch=aarch64&epoch=0&upstream=luksmeta-9-5.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/latchset/luksmeta",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"LUKSMeta is a simple library for storing metadata in the LUKSv1 header",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:9-5.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-openssl-libs-3.0.12-cdb45ffd-7c49-4f85-86a4-f448e6eac4c8-9d865ebc-e79b-4302-9d63-ccce9baea354",
			"name":"openssl-libs",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"fe8a21dc03d6c950264c4aa621ea0c4145da06ac2541c987a442ec2c8af13cfe"
				}
			],
			"description":"The openssl-libs package contains the libraries that are used\nby various applications which support cryptographic algorithms\nand protocols.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/openssl-libs@3.0.12-8.oe2409?arch=aarch64&epoch=1&upstream=openssl-3.0.12-8.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://www.openssl.org/",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A general purpose cryptography library with TLS implementation",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"1:3.0.12-8.oe2409"
		},
		{
			"SPDXID":"SPDXRef-rpm-tpm2-tools-5.5-00fabaef-8cb1-4c52-b5b5-7cac3fe286e3-4482f806-caa0-4f86-8e1e-46b0a8672ea5",
			"name":"tpm2-tools",
			"checksums":[
				{
					"algorithm":"SHA256",
					"checksumValue":"dd6804e6ad9eba93a6e8467831ead5202467ce4d13f71e62a7254e3e04d53c29"
				}
			],
			"description":"The package contains the code for the TPM (Trusted Platform Module) 2.0\ntools based on tpm2-tss.\n\nThe tpm2-tools projects aims to deliver both low-level and aggregate\ncommand line tools that provide access to a tpm2.0 compatible device.",
			"downloadLocation":"NOASSERTION",
			"externalRefs":[
				{
					"referenceCategory":"PACKAGE_MANAGER",
					"referenceLocator":"pkg:rpm/tpm2-tools@5.5-2.oe2409?arch=aarch64&epoch=0&upstream=tpm2-tools-5.5-2.oe2409.src.rpm",
					"referenceType":"purl"
				}
			],
			"filesAnalyzed":false,
			"homepage":"https://github.com/tpm2-software/tpm2-tools",
			"sourceInfo":"acquired package info from repodata DB: repodata/6e742f68b2ae62313d1861c02b7faa39b44c963cbbc6ac979fb577de9af9babc-primary.sqlite.bz2",
			"summary":"A TPM2.0 testing tool based on TPM2.0-TSS",
			"supplier":"Organization: http://openeuler.org",
			"versionInfo":"0:5.5-2.oe2409"
		}
	],
	"relationships":[
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-bash-5.2.21-79ee3f1b-b075-4c10-8970-bf7c22384c2c-c50fca3c-9b11-42d4-98a4-ff8238c6771d"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-coreutils-9.5-3bf74e8c-0121-4371-b650-f2040d5a9a56-9fd1e3fa-9cd4-40bc-94eb-658ea20750f4"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-cryptsetup-2.6.1-b31dae9a-f72d-4a40-b8ab-8bf31499ecb3-5db2106d-44d7-4a87-b3db-a2583c0e0f86"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-curl-8.4.0-b8a3567c-51c1-4d84-82fe-7cb07098c4a2-b93ed9e8-7dd3-481c-8295-5821ad307157"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-glibc-2.38-098de365-83d8-44e8-9207-c3aeb8fc378c-92c6c09c-4b5c-4126-b625-f5a766c1b6e5"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-jansson-2.14-7baf4fe1-f507-45c9-8c5a-e14c735df829-ed88ba0b-bfc6-42a8-9764-64a94d1bc70b"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-jose-14-cd2b0709-6f00-4427-98ad-f2eb9a0563aa-de7bb7cc-8abb-495f-92d9-a52351c4fe6c"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-luksmeta-9-6fc19903-e925-47bc-8c50-8860811fbd23-53c22ea5-cd0c-4c9b-99ba-bbbaf6b805a9"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-openssl-libs-3.0.12-cdb45ffd-7c49-4f85-86a4-f448e6eac4c8-9d865ebc-e79b-4302-9d63-ccce9baea354"
		},
		{
			"spdxElementId":"SPDXRef-rpm-clevis-20-129ce34a-20be-4c79-8ca9-3472cccb01e7",
			"relationshipType":"DEPENDS_ON",
			"relatedSpdxElement":"SPDXRef-rpm-tpm2-tools-5.5-00fabaef-8cb1-4c52-b5b5-7cac3fe286e3-4482f806-caa0-4f86-8e1e-46b0a8672ea5"
		}
	]
}